포렌식 관점에서의 Element 인스턴트 메신저 아티팩트 분석

Translated title of the contribution: Forensic Analysis of Element Instant Messenger Artifacts

Research output: Contribution to journalArticlepeer-review

Abstract

Recently, the investigation has been difficult due to the emergence of messengers that encrypt and store data for the purpose of protecting personal information and provide services such as end-to-end encryption with a focus on security. Accordingly, the number of crime cases using security messengers is increasing, but research on data decoding for security messengers is needed. Element security messengers provide end-to-end encryption functions so that only conversation participants can check conversation history, but research on decoding them is insufficient. Therefore, in this paper, we analyze the instant messenger Element, which provides end-to-end encryption, and propose a plaintext verification of the history of encrypted secure chat rooms using decryption keys stored in the Windows Credential Manager service without user passwords. In addition, we summarize the results of analyzing significant general and secure chat-related artifacts from a digital forensics investigation perspective.
Translated title of the contributionForensic Analysis of Element Instant Messenger Artifacts
Original languageKorean
Pages (from-to)1113-1120
Number of pages8
Journal정보보호학회논문지
Volume32
Issue number6
DOIs
StatePublished - 2022

Fingerprint

Dive into the research topics of 'Forensic Analysis of Element Instant Messenger Artifacts'. Together they form a unique fingerprint.

Cite this