28

Digital Forensic-State of the Art-BC071109

Embed Size (px)

DESCRIPTION

This presentation describes about digital forensic with pratical and academic approach such as digital forensic procedure and support in order to give a comprehensive description to the users.

Citation preview

Page 1: Digital Forensic-State of the Art-BC071109
Page 2: Digital Forensic-State of the Art-BC071109
Page 3: Digital Forensic-State of the Art-BC071109

SSA Edward A Arias, FBI, Cyber Division

Page 4: Digital Forensic-State of the Art-BC071109
Page 5: Digital Forensic-State of the Art-BC071109

SSA Edward A Arias, FBI, Cyber Division

Page 6: Digital Forensic-State of the Art-BC071109
Page 7: Digital Forensic-State of the Art-BC071109
Page 8: Digital Forensic-State of the Art-BC071109
Page 9: Digital Forensic-State of the Art-BC071109
Page 10: Digital Forensic-State of the Art-BC071109
Page 11: Digital Forensic-State of the Art-BC071109
Page 12: Digital Forensic-State of the Art-BC071109
Page 13: Digital Forensic-State of the Art-BC071109
Page 14: Digital Forensic-State of the Art-BC071109
Page 15: Digital Forensic-State of the Art-BC071109
Page 16: Digital Forensic-State of the Art-BC071109
Page 17: Digital Forensic-State of the Art-BC071109
Page 18: Digital Forensic-State of the Art-BC071109
Page 19: Digital Forensic-State of the Art-BC071109
Page 20: Digital Forensic-State of the Art-BC071109

Internet

Perpetrator

Server

www.pemda-diy.go.id

IP Number:

12 digitsForums

Bomb Threat

Page 21: Digital Forensic-State of the Art-BC071109

Internet

Server

www.pemda-diy.go.id

Forums

Bomb Threat

Log File

202.91.11.18APJII

Internet

Searching

Perpetrator’s

Location

Investigation on

Administrators of pemda-

diy.go.id and Jogja Camp

Web Hoster

Jogja Camp

Perpetrator

IP Number:

12 digits

Page 22: Digital Forensic-State of the Art-BC071109
Page 23: Digital Forensic-State of the Art-BC071109

Internet

Server

www.pemda-diy.go.id

Forums Log File

202.91.11.18APJII

Internet

Searching

Perpetrator

IP Number:

12 digits

Bomb Threat

Perpetrator’s

Location

Page 24: Digital Forensic-State of the Art-BC071109

Internet

Server

www.pemda-diy.go.id

Forums Log File

202.91.11.18APJII

Internet

Searching

PT. TE

Computer Academy

IP Analysis

Technical

Room: PCs

Digital Forensic

Analyst Team

Perpetrator

IP Number:

12 digits

Bomb Threat

Perpetrator’s Location

Page 25: Digital Forensic-State of the Art-BC071109

Internet

Server

www.pemda-diy.go.id

Forums Log File

Three

employees

accessing at

that time

Time Line

Investigation

Investigation on PT.

TE Management

202.91.11.18APJII

Internet

Searching

PT. TE

Computer Academy

IP Analysis

Technical

Room: PCs

Digital Forensic

Analyst Team

Perpetrator’s Location

Bomb Threat

Perpetrator

IP Number:

12 digits

Page 26: Digital Forensic-State of the Art-BC071109

Technical Room

Level 4 Building 3

STMIK Amikom

Office Room

Level 1 Building 3

STMIK Amikom

Server

202.91.11.18

Client

10.9.8.16/28

Client

10.9.8.16/28

Client

10.9.8.0/29

Nat on dc0 from 10.9.8.0/29 to any -> 202.91.11.18

Nat on dc0 from 10.9.8.16/28 to any -> 202.91.11.18

Page 27: Digital Forensic-State of the Art-BC071109