VoIP evidence model: a new forensic method for investigating VoIP malicious attacks

Although the invention of Voice over Internet Protocol (VoIP) in communication technology created significant attractive services for its users, it also brings new security threats. Criminals exploit these security threats to perform illegal activities such as VoIP malicious attacks, this will req...

Full description

Bibliographic Details
Main Authors: Ibrahim, Mohammed, Abdullah @ Selimun, Mohd Taufik, Dehghantanha, Ali
Format: Conference or Workshop Item
Language:English
Published: IEEE 2012
Online Access:http://psasir.upm.edu.my/id/eprint/31691/
http://psasir.upm.edu.my/id/eprint/31691/1/31691.pdf
_version_ 1848847018563207168
author Ibrahim, Mohammed
Abdullah @ Selimun, Mohd Taufik
Dehghantanha, Ali
author_facet Ibrahim, Mohammed
Abdullah @ Selimun, Mohd Taufik
Dehghantanha, Ali
author_sort Ibrahim, Mohammed
building UPM Institutional Repository
collection Online Access
description Although the invention of Voice over Internet Protocol (VoIP) in communication technology created significant attractive services for its users, it also brings new security threats. Criminals exploit these security threats to perform illegal activities such as VoIP malicious attacks, this will require digital forensic investigators to detect and provide digital evidence. Finding digital evidence in VoIP malicious attacks is the most difficult task, due to its associated features with converged network. In this paper, a Model of investigating VoIP malicious attacks is proposed for forensic analysis. The model formalizes hypotheses through information gathering and adopt a Secure Temporal Logic of Action(S-TLA+) in the process of reconstructing potential attack scenario. Through this processes, investigators can uncover unknown attack scenario executed in the process of attack. Subsequently, it is expected that the findings of this paper will provide clear description of attacks as well as generation of more specified evidences.
first_indexed 2025-11-15T09:11:56Z
format Conference or Workshop Item
id upm-31691
institution Universiti Putra Malaysia
institution_category Local University
language English
last_indexed 2025-11-15T09:11:56Z
publishDate 2012
publisher IEEE
recordtype eprints
repository_type Digital Repository
spelling upm-316912016-06-07T08:46:42Z http://psasir.upm.edu.my/id/eprint/31691/ VoIP evidence model: a new forensic method for investigating VoIP malicious attacks Ibrahim, Mohammed Abdullah @ Selimun, Mohd Taufik Dehghantanha, Ali Although the invention of Voice over Internet Protocol (VoIP) in communication technology created significant attractive services for its users, it also brings new security threats. Criminals exploit these security threats to perform illegal activities such as VoIP malicious attacks, this will require digital forensic investigators to detect and provide digital evidence. Finding digital evidence in VoIP malicious attacks is the most difficult task, due to its associated features with converged network. In this paper, a Model of investigating VoIP malicious attacks is proposed for forensic analysis. The model formalizes hypotheses through information gathering and adopt a Secure Temporal Logic of Action(S-TLA+) in the process of reconstructing potential attack scenario. Through this processes, investigators can uncover unknown attack scenario executed in the process of attack. Subsequently, it is expected that the findings of this paper will provide clear description of attacks as well as generation of more specified evidences. IEEE 2012 Conference or Workshop Item PeerReviewed application/pdf en http://psasir.upm.edu.my/id/eprint/31691/1/31691.pdf Ibrahim, Mohammed and Abdullah @ Selimun, Mohd Taufik and Dehghantanha, Ali (2012) VoIP evidence model: a new forensic method for investigating VoIP malicious attacks. In: 2012 International Conference on Cyber Security, Cyber Warfare and Digital Forensic (CyberSec), 26-28 June 2012, Kuala Lumpur, Malaysia. (pp. 201-206). 10.1109/CyberSec.2012.6246116
spellingShingle Ibrahim, Mohammed
Abdullah @ Selimun, Mohd Taufik
Dehghantanha, Ali
VoIP evidence model: a new forensic method for investigating VoIP malicious attacks
title VoIP evidence model: a new forensic method for investigating VoIP malicious attacks
title_full VoIP evidence model: a new forensic method for investigating VoIP malicious attacks
title_fullStr VoIP evidence model: a new forensic method for investigating VoIP malicious attacks
title_full_unstemmed VoIP evidence model: a new forensic method for investigating VoIP malicious attacks
title_short VoIP evidence model: a new forensic method for investigating VoIP malicious attacks
title_sort voip evidence model: a new forensic method for investigating voip malicious attacks
url http://psasir.upm.edu.my/id/eprint/31691/
http://psasir.upm.edu.my/id/eprint/31691/
http://psasir.upm.edu.my/id/eprint/31691/1/31691.pdf