Open Access. Powered by Scholars. Published by Universities.®
- Discipline
-
- Information Security (532)
- Artificial Intelligence and Robotics (92)
- Engineering (48)
- Software Engineering (48)
- Social and Behavioral Sciences (45)
-
- Computer Engineering (33)
- Medicine and Health Sciences (29)
- Databases and Information Systems (28)
- Business (26)
- Other Computer Sciences (23)
- Graphics and Human Computer Interfaces (20)
- Life Sciences (17)
- Theory and Algorithms (16)
- Health Information Technology (14)
- Education (13)
- Electrical and Computer Engineering (12)
- OS and Networks (12)
- Public Affairs, Public Policy and Public Administration (12)
- Systems Architecture (12)
- Plant Sciences (11)
- Agricultural Science (10)
- Legal Studies (10)
- Numerical Analysis and Scientific Computing (9)
- Defense and Security Studies (8)
- Digital Communications and Networking (8)
- Sociology (8)
- Arts and Humanities (7)
- Business Administration, Management, and Operations (6)
- Keyword
-
- [RSTDPub] (145)
- Security (104)
- Digital forensics (41)
- Information security (38)
- Machine learning (38)
-
- Privacy (35)
- Cyber security (28)
- Artificial intelligence (25)
- Computer security (24)
- Cybersecurity (24)
- Deep learning (22)
- Network security (22)
- Intrusion detection (21)
- Australia (20)
- Authentication (20)
- Forensics (20)
- Malware (20)
- [aism] (18)
- Healthcare (17)
- Encryption (16)
- Anomaly detection (14)
- Biometrics (14)
- Blockchain (14)
- Risk (14)
- Computer science (13)
- Forensic (13)
- Risk management (13)
- Vulnerability (13)
- Cloud computing (12)
- Detection (12)
- Publication Year
- Publication
-
- Australian Information Security Management Conference (225)
- Research outputs 2022 to 2026 (201)
- Australian Digital Forensics Conference (177)
- Research outputs pre 2011 (171)
- Research outputs 2014 to 2021 (119)
-
- Theses : Honours (87)
- Theses: Doctorates and Masters (85)
- Australian Information Warfare and Security Conference (58)
- Australian Security and Intelligence Conference (42)
- Research outputs 2012 (31)
- Australian eHealth Informatics and Security Conference (25)
- International Cyber Resilience conference (20)
- Research outputs 2011 (17)
- Australian Counter Terrorism Conference (9)
- Research Datasets (6)
- Research outputs 2013 (6)
- EDU-COM International Conference (3)
- InfoSci@ECU Seminars (2)
- Creative Connections Symposium @ BEAP2004 September 4, 2004 (1)
- Publication Type
- File Type
Articles 781 - 810 of 1285
Full-Text Articles in Computer Sciences
Mitigating Cyber-Threats Through Public-Private Partnerships: Low Cost Governance With High-Impact Returns , David M. Cook
Mitigating Cyber-Threats Through Public-Private Partnerships: Low Cost Governance With High-Impact Returns , David M. Cook
International Cyber Resilience conference
The realization that cyber threats can cause the same devastation to a country as physical security risks has taken the long route towards acceptance. Governments and businesses have thrown the glove of responsibility back and forth on numerous occasions, with government agencies citing the need for private enterprise to take up the mantle, and Business returning the gesture by proposing a ‘national’ perspective on cyber security. Ambit claims such as these drain a range of security resources when both sides should work in concert by directing all available energy towards resolving cyber-threats. This paper compares the public-private arrangements through Australasia …
Making Information Security Acceptable To The User , Andrew Jones, Thomas Martin
Making Information Security Acceptable To The User , Andrew Jones, Thomas Martin
International Cyber Resilience conference
The security of information that is processed and stored in Information and Communications Technology systems is an ongoing problem that, as yet, has not been satisfactorily resolved. Software developers, system architects and managers all aspire to use technology to provide improvements in the protection of information that is processed and stored on these systems. However, they are working in an environment where the threats to the information, the technologies in use and the uses to which the technologies are being employed are changing at a pace which is faster than can be effectively addressed. This paper looks at the underlying …
Security Analysis Of Session Initiation Protocol - A Methodology Based On Coloured Petri Nets, Lin Liu
Security Analysis Of Session Initiation Protocol - A Methodology Based On Coloured Petri Nets, Lin Liu
International Cyber Resilience conference
In recent years Voice over Internet Protocol (VoIP) has become a popular multimedia application over the Internet. At the same time critical security issues in VoIP have started to emerge. The Session Initiation Protocol (SIP) is a predominant signalling protocol for VoIP. It is used to establish, maintain and terminate VoIP calls, playing a crucial role in VoIP. This paper is aimed at developing a Coloured Petri Net (CPN)-based approach to analysing security vulnerabilities in SIP, with the ultimate goal of achieving a formal and comprehensive security assessment of SIP specification, and creating a platform for evaluating countermeasures for securing …
Small Business - A Cyber Resilience Vulnerability , Patricia A H Williams, Rachel J. Manheke
Small Business - A Cyber Resilience Vulnerability , Patricia A H Williams, Rachel J. Manheke
International Cyber Resilience conference
Small business in Australia comprise 95% of businesses. As a group this means that they contain increasing volumes of personal and business data. This creates escalating vulnerabilities as information is aggregated by various agencies. These vulnerabilities include identity theft and fraud. The threat environment of small business is extensive with both technical and human vulnerabilities. The problem is that the small business environment is being encouraged to adopt e-commerce by the government yet lacks resources in securing its cyber activity. This paper analysed the threats to this situation and found that questions of responsibility by individual businesses and the government …
What Are You Looking For: Identification Of Remnant Communication Artefacts In Physical Memory, Matthew Simon, Jill Slay
What Are You Looking For: Identification Of Remnant Communication Artefacts In Physical Memory, Matthew Simon, Jill Slay
International Cyber Resilience conference
Law enforcement has sound methods for investigating and obtaining data about targets that are using traditional communication services such as the Public Switched Telephone Network. The Internet as a data transfer medium is a vastly different paradigm to that of traditional telephony networks. Information about targets using Internet communication technologies cannot be obtained using the same methods used for traditional communication. There has been an identified need for methods to obtain information on targets that have been using Internet communication methods. The acquisition and analysis of physical memory has been proposed as a vector for the recovery of such information. …
Tracing Vnc And Rdp Protocol Artefacts On Windows Mobile And Windows Smartphone For Forensic Purpose, Paresh Kerai
Tracing Vnc And Rdp Protocol Artefacts On Windows Mobile And Windows Smartphone For Forensic Purpose, Paresh Kerai
International Cyber Resilience conference
Remote access is the means of acquiring access to a computer or network remotely or from distance. It is typically achieved through the internet which connects people, corporate offices and telecommuters to the internal network of organizations or individuals. In recent years there has been a greater adoption of remote desktop applications that help administrators to configure and repair computers remotely over the network. However, this technology has also benefited cyber criminals. For example they can connect to computers remotely and perform illegal activity over the network. This research will focus on Windows mobile phones and the Paraben forensics software …
Which Organisational Model Meets Best Practice Criterion For Critical Infrastructure Providers: An Examination Of The Australian Perspective Based On Case Studies, Andrew Woodward, Craig Valli
Which Organisational Model Meets Best Practice Criterion For Critical Infrastructure Providers: An Examination Of The Australian Perspective Based On Case Studies, Andrew Woodward, Craig Valli
International Cyber Resilience conference
While it is recognised that there must be segregation between corporate and process control networks in order to achieve a higher level of security, there is evidence that this is not occurring. Computer and network vulnerability assessments were carried out on three Australian critical infrastructure providers to determine their level of security. The security measures implemented by each organisation have been mapped against best practice recommendations for achieving segregation between process control and corporate networks. One of the organisations used a model which provided a dedicated information security team for provision of security for the process control networks. One of …
Penetration Testing And Vulnerability Assessments: A Professional Approach, Konstantinos Xynos, Iain Sutherland, Huw Read, Emlyn Everitt, Andrew J C Blyth
Penetration Testing And Vulnerability Assessments: A Professional Approach, Konstantinos Xynos, Iain Sutherland, Huw Read, Emlyn Everitt, Andrew J C Blyth
International Cyber Resilience conference
Attacks against computer systems and the data contained within these systems are becoming increasingly frequent and evermore sophisticated. So-called “zero-day” exploits can be purchased on black markets and Advanced Persistent Threats (APTs) can lead to exfiltration of data over extended periods. Organisations wishing to ensure security of their systems may look towards adopting appropriate measures to protect themselves against potential security breaches. One such measure is to hire the services of penetration testers (or “pen-tester”) to find vulnerabilities present in the organisation’s network, and provide recommendations as to how best to mitigate such risks. This paper discusses the definition and …
Is Cyber Resilience In Medical Practice Security Achievable? , Patricia A H Williams
Is Cyber Resilience In Medical Practice Security Achievable? , Patricia A H Williams
International Cyber Resilience conference
Australia is moving to a national e-health system with a high level of interconnectedness. The scenario for recovery of such a system, particularly once it is heavily relied upon, may be complex. Primary care medical practices are a fundamental part of the new e-health environment yet function as separate business entities within Australia’s healthcare system. Individually this means that recovery would be reliant on the self-sufficiency of each medical practice. However, the ability of these practices to individually and collectively recover is questionable. The current status of information security in primary care medical practices is compared to the needs of …
Developing Robust Voip Router Honeypots Using Device Fingerprints , Craig Valli, Mohammed Al-Lawati
Developing Robust Voip Router Honeypots Using Device Fingerprints , Craig Valli, Mohammed Al-Lawati
International Cyber Resilience conference
As the telegram was replaced by telephony, so to Voice over IP (VoIP) systems are replacing conventional switched wire telephone devices, these systems rely on Internet connectivity for the transmission of voice conversations. This paper is an outline of ongoing preliminary research into malfeasant VoIP activity on the Internet. 30 years ago PABX systems were compromised by hackers wanting to make long distance calls at some other entities expense. This activity faded as telephony became cheaper and PABX systems had countermeasures installed to overcome attacks. Now the world has moved onto the provision of telephony via broadband enabled Voice over …
Avoiding Sanctions At The E-Discovery Meet-And-Confer In Common Law Countries, Milton Luoma, Vicki Luoma
Avoiding Sanctions At The E-Discovery Meet-And-Confer In Common Law Countries, Milton Luoma, Vicki Luoma
Australian Digital Forensics Conference
The rules of civil procedure in common law countries have been amended to better deal with the requirements of electronic discovery. One of the key changes in case management is the scheduling of a meet-and-confer session where the parties to litigation must meet early in the case before any discovery procedures have begun to exchange information regarding the nature, location, formats, and pertinent facts regarding custody and control of a party’s electronically stored information (ESI). Failure to abide by the rules and participate in good faith at the meet-and-confer session can have dire consequences for the parties and lawyers involved. …
Digital Forensics Analysis Of Spectral Estimation Methods, Tolga Mataracioglu, Unal Tatar
Digital Forensics Analysis Of Spectral Estimation Methods, Tolga Mataracioglu, Unal Tatar
Australian Digital Forensics Conference
Steganography is the art and science of writing hidden messages in such a way that no one apart from the intended recipient knows of the existence of the message. In today’s world, it is widely used in order to secure the information. Since digital forensics aims to detect, recover and examine the digital evidence and steganography is a method for hiding digital evidence, detecting the steganography is an important step in digital forensics process. In this paper, the traditional spectral estimation methods are introduced. The performance analysis of each method is examined by comparing all of the spectral estimation methods. …
Zombie Hard Disks - Data From The Living Dead, Iain Sutherland, Gareth Davies, Andy Jones, Andrew J. C. Blyth
Zombie Hard Disks - Data From The Living Dead, Iain Sutherland, Gareth Davies, Andy Jones, Andrew J. C. Blyth
Australian Digital Forensics Conference
There have been a number of studies conducted in relation to data remaining on disks purchased on the second hand market. A large number of these studies have indicated that a proportion of these disks contain a degree of residual data placed on the drive by the original owners. The Security Research Centre at BT has sponsored a residual data study over the last five years examining disks sourced around the globe, in the UK, USA, Germany France and Australia. In 2008 as part of a 5 year study, Glamorgan University in conjunction with Edith Cowan University in Australia, Longwood …
Development, Delivery And Dynamics Of A Digital Forensics Subject, Tanveer A. Zia
Development, Delivery And Dynamics Of A Digital Forensics Subject, Tanveer A. Zia
Australian Digital Forensics Conference
Digital forensics is a newly developed subject offered at Charles Sturt University (CSU). This subject serves as one of the core subjects for Master of Information Systems Security (Digital Forensics stream) course. The subject covers the legislative, regulatory, and technical aspects of digital forensics. The modules provide students detailed knowledge on digital forensics legislations, digital crime, forensics processes and procedures, data acquisition and validation, e-discovery tools, e-evidence collection and preservation, investigating operating systems and file systems, network forensics, email and web forensics, presenting reports and testimony as an expert witness. This paper summarises the process of subject development, delivery, assessments, …
Forensic Analysis Of The Windows 7 Registry, Khawla Abdulla Alghafli, Andrew Jones, Thomas Anthony Martin
Forensic Analysis Of The Windows 7 Registry, Khawla Abdulla Alghafli, Andrew Jones, Thomas Anthony Martin
Australian Digital Forensics Conference
The recovery of digital evidence of crimes from storage media is an increasingly time consuming process as the capacity of the storage media is in a state of constant growth. It is also a difficult and complex task for the forensic investigator to analyse all of the locations in the storage media. These two factors, when combined, may result in a delay in bringing a case to court. The concept of this paper is to start the initial forensic analysis of the storage media in locations that are most likely to contain digital evidence, the Windows Registry. Consequently, the forensic …
The 2010 Personal Firewall Robustness Evaluation, Satnam Singh Bhamra
The 2010 Personal Firewall Robustness Evaluation, Satnam Singh Bhamra
Australian Digital Forensics Conference
With the advent of cheaper Internet connections, the number of Internet connections among home users is on the rise. Generally, home users have little understanding of the security concerns associated with Internet connectivity. To protect against computer attacks, generally a home user may install a personal firewall on his/her computer. To determine the effectiveness of personal firewalls, evaluation tests were performed against the ten firewall products available to users at local electronic stores and listed on popular firewall security websites. The firewalls were tested in their default and maximum security mode. The investigation was carried out by performing a port …
Malware Forensics: Discovery Of The Intent Of Deception, Murray Brand, Craig Valli, Andrew Woodward
Malware Forensics: Discovery Of The Intent Of Deception, Murray Brand, Craig Valli, Andrew Woodward
Australian Digital Forensics Conference
Malicious software (malware) has a wide variety of analysis avoidance techniques that it can employ to hinder forensic analysis. Although legitimate software can incorporate the same analysis avoidance techniques to provide a measure of protection against reverse engineering and to protect intellectual property, malware invariably makes much greater use of such techniques to make detailed analysis labour intensive and very time consuming. Analysis avoidance techniques are so heavily used by malware that the detection of the use of analysis avoidance techniques could be a very good indicator of the presence of malicious intent. However, there is a tendency for analysis …
Evidential Recovery In A Rfid Business System, Brian Cusack, Ar Kar Ayaw
Evidential Recovery In A Rfid Business System, Brian Cusack, Ar Kar Ayaw
Australian Digital Forensics Conference
Efficient stock management in the commercial retail sector is being dominated by Radio Frequency Identification (RFID) tag implementations. Research reports of the security risk of RFID tags show that breaches are likely and that forensic readiness is a requirement. In this paper a RFID tag business simulation is reported that replicates previous research reports of security breaches with the purpose of identifying potential evidence after such attacks. A Read/Write Tag was cloned and used to replicate a SQL poisoning attack on a simulated Business System. A forensic investigation was then undertaken to identify potential locations for evidential recovery. This paper …
Cyber Forensics Assurance, Glenn S. Dardick
Cyber Forensics Assurance, Glenn S. Dardick
Australian Digital Forensics Conference
As the usage of Cyber Forensics increases, so does the potential for errors in the practice of applying Cyber Forensic. Errors in opinions derived from faulty practices have resulted in grievous miscarriages of justice. However, utilizing the foundations of Information Systems Assurance and Information Quality, a solid foundation for improving the quality and effectiveness of Cyber Forensics can be derived. The foundations of Information Systems Assurance and information Quality provide a solid foundation for improving the current efforts in Cyber Forensics. With increasing computer and network systems usage as well as the increasing frequency of attacks on information systems, the …
The Science, The Technology, The Law, Ken Fowle
The Science, The Technology, The Law, Ken Fowle
Australian Digital Forensics Conference
Forensic science must satisfy two needs; that of the scientific community and that of the legal profession. It is hoped that the legal and scientific outcomes should be based on one and the same thing. Science, Technology and Law depend upon the establishment of a reliable basis of fact. But in the Court it is the law that finally decides what is fact, what is opinion and what the truth should be. This paper looks at the role of the Forensic Practitioner’s requirement for understanding the science, the technology and the law. It endeavours to explain the reasons, using cases, …
Does The Use Of Mimo Technology Used By 802.11n Reduce Or Increase The Impact Of Denial Of Service Attacks?, William Pung, Andrew Woodward
Does The Use Of Mimo Technology Used By 802.11n Reduce Or Increase The Impact Of Denial Of Service Attacks?, William Pung, Andrew Woodward
Australian Digital Forensics Conference
This paper presents the results of a simulated wireless DoS attack against a 802.11g connection that uses Single Input Single Output (SISO), and an 802.11n device that utilizes MIMO. The aim of the experiment was to determine whether the impact of a denial of service attack against MIMO architecture is greater than SISO, since it is capable of receiving more(multiple) attack frames/packets within a given time frame. It was found that both devices were negatively impacted by such attacks, and that throughout was similarly affected. It was also observed that increasing the packet flood rate resulted in a corresponding and …
Towards An Automated Digital Data Forensic Model With Specific Reference To Investigation Processes, Johan Scholtz, Ajit Narayanan
Towards An Automated Digital Data Forensic Model With Specific Reference To Investigation Processes, Johan Scholtz, Ajit Narayanan
Australian Digital Forensics Conference
Existing digital forensics frameworks do not provide clear guidelines for conducting digital forensics investigation. However, had a framework existed, investigations based on known procedures and processes would follow strict prescribed standardisation. This should direct investigations following a set method for comparisons; ensuring future investigation is following one standard. Digital forensics lack confirmed and tested methods; this became obvious when we consider varied interpretations of the same case by participants using different investigation methods. Previous research covered several approaches to setting a forensics framework, which are mere adaptations of previous models. We found that only a few models present a framework …
An Investigation Into The Efficacy Of Three Erasure Tools Under Windows 7, Cheng Toy Chiang, Kelvin Triton, Andrew Woodward
An Investigation Into The Efficacy Of Three Erasure Tools Under Windows 7, Cheng Toy Chiang, Kelvin Triton, Andrew Woodward
Australian Digital Forensics Conference
This paper examined three erasure software tools aimed at removing evidence of online and other activity, and was investigated using the Windows 7 operating system as the test platform. The tools in question were Anti- Tracks, Free Internet Eraser and Free Internet Window Washer. The findings included each of the tested software’s ability to completely erase target data on the drive. It also included examined whether the data was erased or merely the link to the data was deleted, making the file recoverable. It was found that the Anti-Tracks program did not erase any of the information targeted by the …
Remote Access Forensics For Vnc And Rdp On Windows Platform, Paresh Kerai
Remote Access Forensics For Vnc And Rdp On Windows Platform, Paresh Kerai
Theses : Honours
There has been a greater implementation of remote access technologies in recent years. Many organisations are adapting remote technologies such as Virtual Network Computing (VNC) and remote desktop (RDP) applications as customer support application. They use these applications to remotely configure computers and solve computer and network issues of the client on spot. Therefore, the system administrator or the desktop technician does not have to sit on the client computer physically to solve a computer issue. This increase in adaptation of remote applications is of interest to forensic investigators; this is because illegal activities can be performed over the connection. …
Remote Access Forensics For Vnc And Rdp On Windows Platform, Paresh Kerai
Remote Access Forensics For Vnc And Rdp On Windows Platform, Paresh Kerai
Australian Digital Forensics Conference
There has been a greater implementation of remote access technologies in recent years. Many organisations are adapting remote technologies such as Virtual Network Computing (VNC) and remote desktop (RDP) applications as customer support application. They use these applications to remotely configure computers and solve computer and network issues of the client on spot. Therefore, the system administrator or the desktop technician does not have to sit on the client computer physically to solve a computer issue. This increase in adaptation of remote applications is of interest to forensic investigators; this is because illegal activities can be performed over the connection. …
An Analysis Of Malfeasant Activity Directed At A Voip Honeypot, Craig Valli
An Analysis Of Malfeasant Activity Directed At A Voip Honeypot, Craig Valli
Australian Digital Forensics Conference
This paper analyses data collected over a nine month period in a simple VoIP honeypot based on simple design initially put forward by Usken(2009). The honeypot collected 2083 events of malfeasant activity directed towards commonly used VoIP ports. These events resulted in a range of activity being recorded from simple enumeration to advanced probing and attempts to compromise the victim honeypot. The analysis involved traditional statistics from packet analysis, using customised scripts for extraction of data and graphical analysis using i2 Analyst Workstation. The analysis has uncovered an escalation of network activity directed towards the honeypot over a nine month …
Lessons Learned From An Investigation Into The Analysis Avoidance Techniques Of Malicious Software, Murray Brand, Craig Valli, Andrew Woodward
Lessons Learned From An Investigation Into The Analysis Avoidance Techniques Of Malicious Software, Murray Brand, Craig Valli, Andrew Woodward
Australian Digital Forensics Conference
This paper outlines a number of key lessons learned from an investigation into the techniques malicious executable software can employ to hinder digital forensic examination. Malware signature detection has been recognised by researchers to be far less than ideal. Thus, the forensic analyst may be required to manually analyse suspicious files. However, in order to hinder the forensic analyst, hide its true intent and to avoid detection, modern malware can be wrapped with packers or protectors, and layered with a plethora of antianalysis techniques. This necessitates the forensic analyst to develop static and dynamic analysis skills tailored to navigate a …
Fireguard - A Secure Browser With Reduced Forensic Footprint, Don Griffiths, Peter James
Fireguard - A Secure Browser With Reduced Forensic Footprint, Don Griffiths, Peter James
Australian Digital Forensics Conference
Fireguard is a secure portable browser designed to reduce both data leakage from browser data remnants and cyber attacks from malicious code exploiting vulnerabilites in browser plug-ins, extensions and software updates. A browser can leave data remnants on a host PC hard disk drive, often unbeknown to a user, in the form of cookies, histories, saved passwords, cached web pages and downloaded objects. Forensic analysis, using freely available computer forensic tools, may reveal sensitive and confidential information. A browser’s capability to increase its features through plug-ins and extensions and perform patch management or upgrade to a new release via a …
The 2009 Analysis Of Information Remaining On Disks Offered For Sale On The Second Hand Market, Andy Jones, Craig Valli, Glenn S. Dardick, Iain Sutherland, G. Dabibi, Gareth Davies
The 2009 Analysis Of Information Remaining On Disks Offered For Sale On The Second Hand Market, Andy Jones, Craig Valli, Glenn S. Dardick, Iain Sutherland, G. Dabibi, Gareth Davies
Australian Digital Forensics Conference
The ever increasing use and reliance upon computers in both the public and private sector has led to enormous numbers of computers being disposed of at the end of their useful life within an organisation. As the cost of computers has dropped, their use in the home has also continued to increase. In most organisations, computers have a relatively short life and are replaced on a regular basis with the result that, if not properly cleansed of data, they are released into the public domain containing data that can be relatively up to date. This problem is exacerbated by the …
Website Accessibility Issues In Western Australian Public Libraries, Vivienne L. Conway
Website Accessibility Issues In Western Australian Public Libraries, Vivienne L. Conway
Theses : Honours
Website accessibility is a very real and pressing issue for public libraries internationally. Tim Berners-Lee credited with founding the Web, states "The power of the Web is in its universality. Access by everyone regardless of disability is an essential aspect." (Henry & McGee, 2010). There is wide-spread support for adherence to the Web Content Advisory Guidelines Version 1.0 and 2.0 (WCAG) throughout Federal, State and Local levels of government in Australia. The Guidelines have also been affirmed by the Australian Human Rights Commission, disability advocacy groups such as Vision Australia, and the Australian Library and Information Association. The Australian Government …