标题: 网路犯罪入侵案件之数位证据搜证研究
Collecting Digital Evidence on Intrusion Cases of Cyber Crimes
作者: 苏清伟
Ching-Wei Su
黄景彰
Jing-Jang Hwang
管理学院资讯管理学程
关键字: 电脑鉴识科学;数位证据;computer forensics science;digital evidence
公开日期: 2001
摘要: 资讯科技与网际网路的蓬勃发展,促进人类沟通的便利性、生活型态与消费习性的转变,成为各行各业重要数位资产。相对的,由于许多有心人士为取得不当利益,以资讯科技与网际网路作为犯罪工具,对社会治安产生许多负面影响,如网路入侵、赌博、色情、毁谤、诈欺、恐吓、侵害智慧财产权、妨害名誉、侵害他人个人资料保护、贩卖违禁品等网路犯罪型态,严重威胁与侵害网际网路使用者、网路服务提供者、企业与政府机构电子化策略,影响国家经济发展。
为打击日益严重的网路入侵犯罪案件与解决其犯罪现场所产生之数位证据搜证问题,本论文首先探讨入侵案件之特性与数位证据的种类,并以李昌钰博士重建刑案之物证检验步骤为基石,结合欧美先进国家之电脑鉴识科学采证准则,提出一个完整犯罪现场之数位证据搜证处理程序,并以实际入侵案件验证此程序之可行性,最后调查现有电脑鉴识研发公司,所开发之各种电脑鉴识软体功能,做为数位证据之采证工具。所以本论文主要目的协助国内司法人员侦查网路入侵犯罪案件,以降低入侵案件发生率,并引进电脑鉴识科学观念做为国内数位证据研究参考依据与方向。
Internet has become an important media of communication and has added a new dimension to doing business and even to our life style. On the negative side, criminals have also utilized this open environment to gain advantages. On-line gambling, smearing, violation of intellectual property, infringement on personal privacy is just some of those crimes. In this thesis, the author addresses the issue on collecting evidence to help police officials to fight those cyber crimes. Being different from the evidence collected for investigating traditional crimes, evidential documents exist, now, in digital form. Establishing a systematic procedure for collecting digital evidence is a necessity, if the evidence is to be admissible to the court.
The author extends a formal procedure for the traditional crime investigation presented by Henry Lee to serve this purpose, adding more steps adapted from principles of computer forensic science. To validate the feasibility of the extended procedure, it is applied, step by step, to investigate a case of network intrusion. The investigation has not been completed, because the criminal apparently intruded the system from nodes located in foreign countries and international coordination must have been involved if a complete investigation demanded. The case study, however, demonstrates the first effort, in this country, to establish such a formal procedure. In the mean time, the author has surveyed several software tools applicable to digital-evidence collection. The author hopes that the result of this thesis research can help law enforcement officials to fight against cyber crimes, in particular, against the crimes involving network intrusions.
URI: http://140.113.39.130/cdrfb3/record/nctu/#NT901396004
http://hdl.handle.net/11536/69586
显示于类别:Thesis