Evidential notions of defensibility and admissibility with property preservation

  • Authors:
  • Raphael C.-W. Phan;Ahmad R. Amran;John N. Whitley;David J. Parish

  • Affiliations:
  • High Speed Networks Lab, Electronic and Electrical Engineering department, Loughborough University, UK;High Speed Networks Lab, Electronic and Electrical Engineering department, Loughborough University, UK;High Speed Networks Lab, Electronic and Electrical Engineering department, Loughborough University, UK;High Speed Networks Lab, Electronic and Electrical Engineering department, Loughborough University, UK

  • Venue:
  • iNetSec'10 Proceedings of the 2010 IFIP WG 11.4 international conference on Open research problems in network security
  • Year:
  • 2010

Quantified Score

Hi-index 0.00

Visualization

Abstract

For security-emphasizing fields that deal with evidential data acquisition, processing, communication, storage and presentation, for instance network forensics, border security and enforcement surveillance, ultimately the outcome is not the technical output but rather physical prosecutions in court (e.g. of hackers, terrorists, law offenders) or counter-attack measures against the malicious adversaries. The aim of this paper is to motivate the research direction of formally linking these technical fields with the legal field. Notably, deriving technical representations of evidential data such that they are useful as evidences in court; while aiming that the legal parties understand the technical representations in better light. More precisely, we design the security notions of evidence processing and acquisition, guided by the evidential requirements from the legal perspective; and discuss example relations to forensics investigations.