Abstract

The number of cyber incidents in which an Internet of Things (IoT) device or system is present is increasing every day, requiring the opening of forensic investigations that can shed light on what has occurred. In order to be able to provide investigators with proper solutions for performing complete and efficient examinations in this new environment, IoT systems and devices are being studied from a forensic perspective so that tools and procedures can be designed accordingly. In this article, the IoT version of one of the most used Linux distributions, namely Ubuntu, is studied to determine in what way a forensic investigation of this system should be performed, detailing how to approach the acquisition and analysis phases. In addition, both the volatile and non-volatile artifacts that might held useful information are listed and described.

Details

Title
Forensic Analysis of the IoT Operating System Ubuntu Core
Author
Castelo Gómez, Juan Manuel 1 ; José Roldán Gómez 1 ; Martínez Martínez, José Luis 1 ; Álvaro del Amo Mínguez 1 

 Universidad de Castilla-La Mancha, Albacete Research Institute of Informatics. Investigación 2 , Albacete 02071 , Spain 
First page
012082
Publication year
2022
Publication date
Apr 2022
Publisher
IOP Publishing
ISSN
17426588
e-ISSN
17426596
Source type
Scholarly Journal
Language of publication
English
ProQuest document ID
2652902314
Copyright
Published under licence by IOP Publishing Ltd. This work is published under http://creativecommons.org/licenses/by/3.0/ (the “License”). Notwithstanding the ProQuest Terms and Conditions, you may use this content in accordance with the terms of the License.