Title | Digital Forensic Readiness Information System For EJBCA Digital Signature Web Server |
Publication Type | Conference Paper |
Year of Publication | 2022 |
Authors | Rasyid, Ihsan Faishal, Zagi, Luqman Muhammad, Suhardi |
Conference Name | 2022 International Conference on Information Technology Systems and Innovation (ICITSI) |
Date Published | nov |
Keywords | Data collection, Data visualization, Databases, Digital forensic readiness, digital forensics, digital forensics investigation lifecycle, digital signatures, engineering design process, Pipelines, pubcrawl, resilience, Resiliency, Scalability, Technological innovation, visualization |
Abstract | As the nature of the website, the EJBCA digital signatures may have vulnerabilities. The list of web-based vulnerabilities can be found in OWASP's Top 10 2021. Anticipating the attack with an effective and efficient forensics application is necessary. The concept of digital forensic readiness can be applied as a pre-incident plan with a digital forensic lifecycle pipeline to establish an efficient forensic process. Managing digital evidence in the pre-incident plan includes data collection, examination, analysis, and findings report. Based on this concept, we implemented it in designing an information system that carries out the entire flow, provides attack evidence collection, visualization of attack statistics in executive summary, mitigation recommendation, and forensic report generation in a physical form when needed. This research offers an information system that can help the digital forensic process and maintain the integrity of the EJBCA digital signature server web. |
DOI | 10.1109/ICITSI56531.2022.9971126 |
Citation Key | rasyid_digital_2022 |