Start networking and exchanging professional insights

Register now or log in to join your professional community.

Follow

How Internet Forensics Changed Criminal Investigations?

user-image
Question added by Ahmed Fathy , Information Security Specialist , UAE University
Date Posted: 2014/05/20
Ashutosh Gautam
by Ashutosh Gautam , Lead: Enterprise Network and Security , Thakral One Nepal Pvt Limited

Excellent thoughts, Uday.My few cents, if I may!

 

Definitely the rise of internet forensics have helped solve quite a number of cases. But, still, taking the historical facts, it still is questionable whether 'all' of those cases were solved, or let's say, was closed. You may take into recent events on ME, Saudi Aramco, where many computers were compromised, but still with no solid proof whatsoever. Had Aramco chosen to be proactive beforehand, these wouldn't had happened.

 

That said, digging into malwares is definitely a challenge with the rise | numbers of commercial | free crypto softwares found in the market. It is also not a hidden fact that many of these crypto packers aren't public, still. For instance, China alone account for about20% of internet malwares. This still is a great challenge for software | security vendors to mitigate. Hence, my belief is to be secure beforehand, train the staff appropriately, teach them how advanced Network | Sockets | forensics work. It is also advisable to opt for the vendor with maximum 'threat catch' reputation. These, combined with an ideal practice will definitely help mitigate the remaining fold of internet security paradigm.

 

Cheers!

Dear Mr. Ahmed Fathy,Cyber / Internet / Digital forensics helps a Company OR a person OR any entity to submit substantial evidencce in the court of law / Judicial system in a way that may be acceptable i.e. As per digital forensics, Anyone performing the activity OR involved in the activity from start till end of role maintains evidence such that the content in question was not tampered with.This helps the forensic investigation provide an edge to the investigation because evidence is not modified and can be verified. If a hacker is caught, Court OR law can punish the person only if evidence is produced. So the procedure on how the hacker was caught, how the person's laptop/PC/electronic devices were treated, How the data was read from the laptop and etc. known as chain of custody usually is generated as part of a forensic report. All in all, Forensics is a regulation as per courts/judicial systems set up. Hence it is crucial as a person  is given sentence based on the forensic report and evidence

More Questions Like This

Do you need help in adding the right keywords to your CV? Let our CV writing experts help you.