• Title/Summary/Keyword: Forensic Investigation

Search Result 322, Processing Time 0.024 seconds

Forensic Investigation Procedure for Real-time Synchronization Service (실시간 동기화 서비스에 대한 포렌식 조사 절차에 관한 연구)

  • Lee, Jeehee;Jung, Hyunji;Lee, Sangjin
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.22 no.6
    • /
    • pp.1363-1374
    • /
    • 2012
  • The number and use of Internet connected devices has dramatically increased in the last several years. Therefore many services synchronizing data in real-time is increasing such as mail, calendar and storage service. This service provides convenience to users. However, after devices are seized, the data could be changed because of characteristic about real-time synchronization. Therefore digital investigation could be difficult by this service. This work investigates the traces on each local device and proposes a method for the preservation of real-time synchronized data. Based on these, we propose the procedures of real-time synchronization data.

Acquiring Credential and Analyzing Artifacts of Wire Messenger on Windows (Windows에서의 Wire 크리덴셜 획득 및 아티팩트 분석)

  • Shin, Sumin;Kim, Soram;Youn, Byungchul;Kim, Jongsung
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.31 no.1
    • /
    • pp.61-71
    • /
    • 2021
  • Instant messengers are a means of communication for modern people and can be used with smartphones and PCs respectively or connected with each other. Messengers, which provide various functions such as message, call, and file sharing, contain user behavior information regarded as important evidence in forensic investigation. However, it is difficult to analyze as well as acquire smartphone data because of the security of smartphones or apps. However, messenger data can be extracted through PC when the messenger is used on PC. In this paper, we obtained the credential data of Wire messenger in Windows 10, and showed that it is possible to log-in from another PC without authentication. In addition, we identified and classified major artifacts generated based on user behavior.

A study on NLP Text Preprocessing for digital forensic investigation (디지털 포렌식 조사를 위한 NLP의 텍스트 전처리 연구)

  • Lee, Sung-won;Kim, Dohyun
    • Proceedings of the Korean Institute of Information and Commucation Sciences Conference
    • /
    • 2022.05a
    • /
    • pp.189-191
    • /
    • 2022
  • In modern society, messenger services are necessary to communication with others, and criminals are no exception. In representative cases of Burning Sun Gate(2018) and NthRoom(2019), messenger data analysis was used as a smoking gun to solve these criminal cases. Therefore messenger text analytics is critical for the resolution of crimes in a modern environment. also, it takes a lot of time to analyze messenger data in the digital forensic investigation process, so researchers in text mining need to be more effective to respond with the current situation In this paper, we study various natural language preprocessing(NLP) methods according to the characteristics of instant messages to effectively proceed with NLP analysis on instant messengers.

  • PDF

A Study on the Fire Risk of the Kimchi Refrigerator through Case Analysis of Fire Accidents (사례 분석을 통한 김치냉장고의 화재 위험성에 관한 연구)

  • Park, Nam Kyu;Ji, Hong Keun;Song, Jae Yong
    • Journal of the Korean Society of Safety
    • /
    • v.35 no.2
    • /
    • pp.1-7
    • /
    • 2020
  • In this paper, we describe fire risk of Kimchi refrigerator. The Kimchi refrigerator has been widely spread and used starting from the first half of 2000 and recently fire accidents caused by the Kimchi refrigerator emerged as social concern. In particular, in products of a specific manufacturer, it is not an environmental factor, but a characteristic that the fire is caused due to a defect of the product itself is shown. These features are judged to be formed by unique defects regardless of external factor by forming electrically arc mark in the relay element. In this paper, we analyzed the cause of the fire occurring in the Kimchi refrigerator and finally confirmed the characteristic that the fire occurred mainly in the relay element due to insufficient capacity of the relay element. Therefore, when a fire occurs in a product of the same maker as the Kimchi refrigerator mentioned in this paper, it is always judged that the inspection of the relay element should be carried out.

Genotype and Allele Frequency of the Short Tandem Repeat F13A01 Locus by Polymerase Chain Reaction in Korean (한국인에서 중합효소반응을 이용한 short tandem repeat 유전좌위 F13A01 유전자형 및 대립유전자 빈도)

  • Young-Su Lee;Chang-Lyuk Yoon
    • Journal of Oral Medicine and Pain
    • /
    • v.21 no.2
    • /
    • pp.317-329
    • /
    • 1996
  • Allelic frequency and genotype distribution of short tandem repeat(STR) F13A01 locus was analysed by polymerase chain reaction, polyacrylamide gel electrophoresis and silver staining from human genomic deoxyribonucleic acid(DNA) was extracted from 205 unrelated Korean to be applied to forensic identification and parentage testing as a database. The results were as follows : 1. 5 alleles and 11 genotypes of F13A01 locus were detected and heterozygosity value was 62.0% and the observed each alleles and allelic frequency was 3.2(0.363), 4(0.105), 5(0.063), 6(0.466), 16(0.002). 2. The allelic diversity value was 0.639 and the power of discrimination was 0.804.3. Compared with observed number of alleles and allele frequency in ethnic difference, result was appeared to be similar to that of Japanese and Asians, while was appeared to be much different to that of Blacks and Caucasians in the observed number of alleles and frequency of allele 3.2, 5, 7. From the above result of this investigation, the allelic frequency of STR F13A01 locus in the Korean was considerd to be useful for individual identification and parentage testing as a database.

  • PDF

Validation of new saliva test using SALIgAE® (사건현장 검사를 위해 변형된 SALIgAE® 타액검사법의 유효성 검토)

  • Lim, Si-Keun;Kwak, Kyung-Don;Choi, Dong-Ho;Han, Myun-Soo
    • Analytical Science and Technology
    • /
    • v.21 no.1
    • /
    • pp.48-52
    • /
    • 2008
  • A new forensic saliva test method using $SALIgAE^{(R)}$ was evaluated in this study. The sensitivity and specificity of $SALIgAE^{(R)}$ were examined and compared to those of other saliva test methods such as agarose gel diffusion method and $Phadebas^{(R)}$ test sheet method. $SALIgAE^{(R)}$ showed high sensitivity and specificity to human saliva in addition to quickness. Moreover modified $SALIgAE^{(R)}$ method was cheap and easy to use in crime scene and DNA laboratory. $SALIgAE^{(R)}$ was very stable at room temperature and had no effect on STR typing.

Forensic Study about Hair Analysis as Legal Evidence of Drug Abuse Crime (모발에서 마약류 분석의 법과학적 고찰 - 마약류 범죄수사에서 모발 감정결과의 증거사용에 대해서 -)

  • Park, Yong-Hoon;Han, Eun-Young;Lee, Soo-Yeun
    • YAKHAK HOEJI
    • /
    • v.52 no.6
    • /
    • pp.452-465
    • /
    • 2008
  • Hair analysis for drugs of abuse offers the crucial potential advantage when compared to urine, such as the longer time window of drug intake, which makes retrospective investigation of chronic and/or past consumption. This paper reviews the physiological basis of hair growth, mechanism of drug incorporation, analytical methods, result interpretation and practical application of hair analysis. Moreover, to facilitate the court's decision regarding specific circumstances surrounding the crime, this review demonstrated that the results of hair analysis not only should be admitted as scientific evidence of drug use but also could legally improve reliability of the evidence.

A Forensic Engineering Study on Bursting Accident of Composite Pressure Vessel in CNG Bus (CNG버스 복합재 압력용기 파열사고에 관한 법공학적 연구)

  • Kim, Eui-Soo;Kim, Jin-Pyo;Park, Nam-Kyu;Kim, Youn-Hoi
    • Journal of the Korean Society of Safety
    • /
    • v.23 no.5
    • /
    • pp.15-21
    • /
    • 2008
  • The bus using compressed natural gas(CNG) trend to be extended in use internationally as optimal counter-plan for reducing discharge gas of light oil due to high concern about environment. But, Composit pressure vessels(CPV) to be equipped with CNG bus is always involved in the point that safety accidents happen due to having compressed natural gas. In this report, we analysis the cause of CPV bursting accident by reviewing design and manufacture factor and suggest preventive measure through this case.

Pattern of Drugs & Poisons in Autopsy Cases in Korea for Recent Three Years (2007~2009) - Selection of Target Drugs for Systematic Toxicological Analysis - (최근 3년간 국내 변사체 중 약독물 검출 유형(2007~2009) - 약독물 검출 시스템 확립을 위한 목표 약물의 선별 -)

  • Kim, Eun-Mi;Kim, Ji-Hyun;Hong, Hyo-Jeong;Jeong, Su-Jin;In, Sang-Hwan;Rhee, Jong-Sook;Jung, Jin-Mi;Lee, Han-Sun;Lee, Sang-Ki
    • YAKHAK HOEJI
    • /
    • v.54 no.5
    • /
    • pp.341-347
    • /
    • 2010
  • The majority of forensic autopsies in Korea are performed by the National Institute of Scientific Investigation (NISI), and the NISI has carried out about 4,000 cases annually. Total 4,578 autopsies were performed by NISI in 2009, among them 2,918 cases (64%) were carried out at main office of NISI in Seoul, which is in charge of Seoul, Incheon and Gyeonggi province. In this study we investigated pattern of drugs & poisons in autopsy cases for recent three years in Korea. Postmortem specimens (bloods, gastric contents, etc) from autopsy cases by main office of NISI during 2007~2009 were screened for drugs & poisons. Using laboratory information management system of NISI (iLIMS), the kinds of drugs & poisons and the frequency were investigated. As the results, 1,705 cases were negative to drugs & poisons, it occupied 58% of total 2,918 autopsy cases in 2009. During three years (2007~2009), the kinds of drugs & poisons detected in specimens were 206, 185 and 203, respectively, and top three drugs were atropine (anticholinergic), chlorpheniramine (antihistamine) and lidocaine (local anaesthetic/anti-arrythmic). These drugs were supposed to be used not so much for suicidal or homicidal purpose as for therapeutic purpose in hospital. Meanwhile cyanide showed the highest frequency of poisons during 2007~2009, and the frequency was 32 cases in 2009. In case of pesticides, poisoning by paraquat (herbicide, 17 cases) showed the highest frequency, and methomyl (insecticide, 9 cases) and glyphosate (herbicide, 7 cases) were followed. Finally we selected 62 drugs as target drugs for systematic toxicological analysis (STA) for Korea. Poisons such as pesticides, natural toxins, volatile compounds should be included for STA in further study.

Analysis of Structured and Unstructured Data and Construction of Criminal Profiling System using LSA (LSA를 이용한 정형·비정형데이터 분석과 범죄 프로파일링 시스템 구현)

  • Kim, Yonghoon;Chung, Mokdong
    • Journal of Korea Multimedia Society
    • /
    • v.20 no.1
    • /
    • pp.66-73
    • /
    • 2017
  • Due to the recent rapid changes in society and wide spread of information devices, diverse digital information is utilized in a variety of economic and social analysis. Information related to the crime statistics by type of crime has been used as a major factor in crime. However, statistical analysis using only the structured data has the difficulty in the investigation by providing limited information to investigators and users. In this paper, structured data and unstructured data are analyzed by applying Korean Natural Language Processing (Ko-NLP) and the Latent Semantic Analysis (LSA) technique. It will provide a crime profile optimum system that can be applied to the crime profiling system or statistical analysis.