{"title":"基于蜜罐和蜜网的BYOD数字取证准备框架","authors":"Audrey Asante, Vincent Amankona","doi":"10.58940/1558-7223.1706","DOIUrl":null,"url":null,"abstract":"The utilization of the internet within organizations has surged over the past decade. Though, it has numerous benefits, the internet also comes with its own challenges such as intrusions and threats. Bring Your Own Device (BYOD) as a growing trend among organizations allow employees to connect their portable devices such as smart phones, tablets, laptops, to the organization’s network to perform organizational duties. It has gained popularity over the years because of its flexibility and cost effectiveness. This adoption of BYOD has exposed organizations to security risks and demands proactive measures to mitigate such incidents. In this study, we propose a Digital Forensic Readiness (DFR) framework for BYOD using honeypot technology. The framework consists of the following components: BYOD devices, Management, People, Technology and DFR. It is designed to comply with ISO/IEC 27043, detect security incidents/threats and collect potential digital evidence using lowand high-level interaction honeypots. Besides, the framework proffers adequate security support to the organization through space isolation, device management, crypto operations, and policies database. This framework would ensure and improve information security as well as securely preserve digital evidence. Embedding DFR into BYOD will improve security and enable an organization to stay abreast when handling a security incident.","PeriodicalId":351663,"journal":{"name":"J. Digit. Forensics Secur. Law","volume":"10 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2021-09-07","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":"{\"title\":\"Digital Forensic Readiness Framework based on Honeypot and Honeynet for BYOD\",\"authors\":\"Audrey Asante, Vincent Amankona\",\"doi\":\"10.58940/1558-7223.1706\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"The utilization of the internet within organizations has surged over the past decade. Though, it has numerous benefits, the internet also comes with its own challenges such as intrusions and threats. Bring Your Own Device (BYOD) as a growing trend among organizations allow employees to connect their portable devices such as smart phones, tablets, laptops, to the organization’s network to perform organizational duties. It has gained popularity over the years because of its flexibility and cost effectiveness. This adoption of BYOD has exposed organizations to security risks and demands proactive measures to mitigate such incidents. In this study, we propose a Digital Forensic Readiness (DFR) framework for BYOD using honeypot technology. The framework consists of the following components: BYOD devices, Management, People, Technology and DFR. It is designed to comply with ISO/IEC 27043, detect security incidents/threats and collect potential digital evidence using lowand high-level interaction honeypots. Besides, the framework proffers adequate security support to the organization through space isolation, device management, crypto operations, and policies database. This framework would ensure and improve information security as well as securely preserve digital evidence. Embedding DFR into BYOD will improve security and enable an organization to stay abreast when handling a security incident.\",\"PeriodicalId\":351663,\"journal\":{\"name\":\"J. Digit. Forensics Secur. Law\",\"volume\":\"10 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2021-09-07\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"2\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"J. Digit. Forensics Secur. Law\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.58940/1558-7223.1706\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"J. Digit. Forensics Secur. Law","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.58940/1558-7223.1706","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 2
摘要
在过去的十年中,组织内部对互联网的使用激增。尽管互联网有很多好处,但它也有自己的挑战,比如入侵和威胁。BYOD (Bring Your Own Device,自带设备)作为一种日益增长的趋势,允许员工将他们的便携式设备(如智能手机、平板电脑、笔记本电脑)连接到组织的网络来执行组织职责。多年来,它因其灵活性和成本效益而广受欢迎。BYOD的采用给企业带来了安全风险,需要采取积极的措施来缓解此类事件。在本研究中,我们提出了一个使用蜜罐技术的BYOD数字取证准备(DFR)框架。该框架由以下几个部分组成:BYOD设备、管理、人员、技术和DFR。它的设计符合ISO/IEC 27043,检测安全事件/威胁,并使用低级和高级交互蜜罐收集潜在的数字证据。此外,该框架通过空间隔离、设备管理、加密操作和策略数据库为组织提供充分的安全支持。该框架将确保和改善信息安全,并安全地保存数字证据。将DFR嵌入BYOD将提高安全性,并使组织在处理安全事件时保持同步。
Digital Forensic Readiness Framework based on Honeypot and Honeynet for BYOD
The utilization of the internet within organizations has surged over the past decade. Though, it has numerous benefits, the internet also comes with its own challenges such as intrusions and threats. Bring Your Own Device (BYOD) as a growing trend among organizations allow employees to connect their portable devices such as smart phones, tablets, laptops, to the organization’s network to perform organizational duties. It has gained popularity over the years because of its flexibility and cost effectiveness. This adoption of BYOD has exposed organizations to security risks and demands proactive measures to mitigate such incidents. In this study, we propose a Digital Forensic Readiness (DFR) framework for BYOD using honeypot technology. The framework consists of the following components: BYOD devices, Management, People, Technology and DFR. It is designed to comply with ISO/IEC 27043, detect security incidents/threats and collect potential digital evidence using lowand high-level interaction honeypots. Besides, the framework proffers adequate security support to the organization through space isolation, device management, crypto operations, and policies database. This framework would ensure and improve information security as well as securely preserve digital evidence. Embedding DFR into BYOD will improve security and enable an organization to stay abreast when handling a security incident.