Enhancing forensic readiness in IoT-enabled organisations: a real-time model

Kuku, Oyeyemi, Chrysikos, Alexandros and Shahram, Salekzamankhani (2025) Enhancing forensic readiness in IoT-enabled organisations: a real-time model. In: Data Processing and Networking. Proceedings of ICDPN 2024. Lecture Notes in Networks and Systems (LNSS), 1 (1288). Springer, London (UK), pp. 217-235. ISBN 978-981-96-3102-5 (e-book), 978-981-96-3101-8 (softcover)

Abstract

The increase in the intensity of cyber-attacks has raised the need for conducting thorough digital forensic investigations to collect evidence and locate the source of the attack. The research presents a digital forensic readiness model that creates a realistic organisation scenario where multiple devices are connected and exposed to potential attackers. Digital forensic tools such as WAZUH and SPLUNK have been applied to gather the evidence. The proposed digital forensic readiness model targets organisational complexities, readiness processes, and compliance with ISO standards. ISO/IEC 27043:2015 emerges as a crucial standard for incident investigation concepts and procedures, offering a general framework adaptable to IoT environments. The research also shows that due to the changing and varied nature of IoT environments, conventional security approaches may not be enough, calling for alternative ways of risk evaluation.

Details
Record
View Item View Item