Options
HTML5 Zero Configuration Covert Channels: Security Risks and Challenges
Date Issued
2015-05-21
Date Available
2015-08-14T16:22:27Z
Abstract
In recent months there has been an increase in the popularity and public awareness of secure, cloudless file transfer systems. The aim of these services is to facilitate the secure transfer of files in a peer-to- peer (P2P) fashion over the Internet without the need for centralised authentication or storage. These services can take the form of client installed applications or entirely web browser based interfaces. Due to their P2P nature, there is generally no limit to the file sizes involved or to the volume of data transmitted – and where these limitations do exist they will be purely reliant on the capacities of the systems at either end of the transfer. By default, many of these services provide seamless, end-to-end encryption to their users. The cyber security and cyber forensic consequences of the potential criminal use of such services are significant. The ability to easily transfer encrypted data over the Internet opens up a range of opportunities for illegal use to cyber criminals requiring minimal technical know-how. This paper explores a number of these services and provides an analysis of the risks they pose to corporate and governmental security. A number of methods for the forensic investigation of such transfers are discussed.
Type of Material
Conference Publication
Publisher
ADFSL
Web versions
Language
English
Status of Item
Peer reviewed
Conference Details
The 10th ADFSL Conference on Digital Forensics, Security and Law (CDFSL 2015), Florida Embry-Riddle Aeronautical University, United States, 19-21 May 2015
This item is made available under a Creative Commons License
File(s)
Owning collection
Views
1602
Acquisition Date
Mar 28, 2024
Mar 28, 2024
Downloads
526
Last Week
1
1
Last Month
6
6
Acquisition Date
Mar 28, 2024
Mar 28, 2024