Skip to main content
Top

2019 | OriginalPaper | Chapter

7. Blockchain for Modern Digital Forensics: The Chain-of-Custody as a Distributed Ledger

Authors : Haider Al-Khateeb, Gregory Epiphaniou, Herbert Daly

Published in: Blockchain and Clinical Trial

Publisher: Springer International Publishing

Activate our intelligent search to find suitable subject content or patents.

search-config
loading …

Abstract

Blockchain technology can be incorporated into new systems to facilitate modern Digital Forensics and Incident Response (DFIR). For example, it is widely acknowledged that the Internet-of-Things (IoT) has introduced complexity to the cyberspace, however, incident responders should also realise the advantages presented by these new “Digital Witnesses” (DW) to support their investigation. Logs generated by IoT devices can help in the process of event reconstruction, but their integrity -and therefore admissibility- can be achieved only if a Chain-of-Custody (CoC) is maintained within the wider context of an on-going digital investigation. Likewise, the transition to electronic documentation improves data availability, legibility, the utility of notes, and therefore enhances the communication between stakeholders. However, without a proof of validity, these data could be falsified. For example, in an application area such as eHealth, there is a requirement to maintain various existing (and new) rules and regulations concerning authorship, auditing, and the integrity of medical records. Lacking data control could lead to system abuse, fraud and severe compromise of service quality. These concerns can be resolved by implementing an online CoC. In this paper, we discuss the value and means of utilising Blockchain in modern systems to support DFIR. we demonstrate the value of Blockchain to improve the implementation of Digital Forensic Models and discuss why law enforcement and incident responders need to understand Blockchain technology. Furthermore, the admissibility of a Digital Evidence to a Court of Law requires chronological documentation. Hence, we discuss how the CoC can be sustained based on a distributed ledger. Finally, we provide a practical scenario related to eHealth to demonstrate the value of this approach to introduce forensic readiness to computer systems and enable better Police interventions.

Dont have a licence yet? Then find out more about our products and how to get one now:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literature
go back to reference Abuosba K (2015) Formalizing big data processing lifecycles: acquisition, serialization, aggregation, analysis, mining, knowledge representation, and information dissemination. 2015 international conference and workshop on computing and communication (IEMCON), pp 1–4. https://doi.org/10.1109/IEMCON.2015.7344533 Abuosba K (2015) Formalizing big data processing lifecycles: acquisition, serialization, aggregation, analysis, mining, knowledge representation, and information dissemination. 2015 international conference and workshop on computing and communication (IEMCON), pp 1–4. https://​doi.​org/​10.​1109/​IEMCON.​2015.​7344533
go back to reference Alhaboby ZA, Alhaboby D, Al-Khateeb HM, Epiphaniou G, Ismail DKB, Jahankhani H, Pillai P (2018) Understanding the cyber-victimisation of people with long term conditions and the need for collaborative forensics-enabled disease management programmes. In: Jahankhani H (ed) Cyber criminology. Advanced sciences and technologies for security applications. Springer, Cham Alhaboby ZA, Alhaboby D, Al-Khateeb HM, Epiphaniou G, Ismail DKB, Jahankhani H, Pillai P (2018) Understanding the cyber-victimisation of people with long term conditions and the need for collaborative forensics-enabled disease management programmes. In: Jahankhani H (ed) Cyber criminology. Advanced sciences and technologies for security applications. Springer, Cham
go back to reference Cocco L, Pinna A, Marchesi M (2017) Banking on Blockchain: costs savings thanks to the Blockchain technology. Futur Internet 9(3):25CrossRef Cocco L, Pinna A, Marchesi M (2017) Banking on Blockchain: costs savings thanks to the Blockchain technology. Futur Internet 9(3):25CrossRef
go back to reference Smith FC, Bace RG (2002) A guide to forensic testimony: the art and practice of presenting testimony as an expert technical witness. Pearson Education Smith FC, Bace RG (2002) A guide to forensic testimony: the art and practice of presenting testimony as an expert technical witness. Pearson Education
go back to reference U.S. Department of Homeland Security – United States Secret Service (2015) Best practices for seizing electronic evidence: a pocket guide for first responders U.S. Department of Homeland Security – United States Secret Service (2015) Best practices for seizing electronic evidence: a pocket guide for first responders
go back to reference Williams J (2012) ACPO good practice guide for digital evidence. Metropolitan Police Service, Association of chief police officers, GB Williams J (2012) ACPO good practice guide for digital evidence. Metropolitan Police Service, Association of chief police officers, GB
Metadata
Title
Blockchain for Modern Digital Forensics: The Chain-of-Custody as a Distributed Ledger
Authors
Haider Al-Khateeb
Gregory Epiphaniou
Herbert Daly
Copyright Year
2019
DOI
https://doi.org/10.1007/978-3-030-11289-9_7

Premium Partner