Forensic acquisitions of WhatsApp data on popular mobile platforms

Shortall, A. and Azhar, M. H. B. (2015) Forensic acquisitions of WhatsApp data on popular mobile platforms. In: UNSPECIFIED, ed. Proceedings of the Sixth International Conference on Emerging Security Technologies. IEEE Press. pp. 13-17 ISBN 9781467397995

[img] PDF
13778.pdf - Draft Version
Restricted to Repository staff only

Download (577kB)

Abstract

Encryption techniques used by popular messaging services such as Skype, Viber and WhatsApp make traces of illegal activities by criminal groups almost undetectable. This paper reports challenges involved to examine data of the WhatsApp application on popular mobile platforms (iOS, Android and Windows Phone) using latest forensic software such as EnCase, UFED and Oxygen Forensic Suite. The operating systems used were Windows phone 8.1, Android 5.0.1 (Lollipop) and iOS 8.3. Results show that due to strong security features built into the Windows 8.1 system forensic examiners may not be able to access data with standard forensic suite and they must decide whether to perform a live forensic acquisition. This paper provides forensics examiners with practical techniques for recovering evidences of WhatsApp data from Windows 8.1 mobile operating systems that would otherwise be inaccessible.

Item Type: Book Section
Subjects: Q Science > QA Mathematics > QA0075 Electronic computers. Computer science > QA0076.75 Computer software
Divisions: Faculty of Social and Applied Sciences > School of Law, Criminal Justice and Computing
Related URLs:
Depositing User: Dr. Hannan Azhar
Date Deposited: 24 Sep 2015 17:00
Last Modified: 08 Aug 2017 08:52
URI: https://create.canterbury.ac.uk/id/eprint/13778

Actions (login required)

Update Item (CReaTE staff only) Update Item (CReaTE staff only)

Downloads

Downloads per month over past year

View more statistics

Share

Connect with us

Last edited: 29/06/2016 12:23:00