| | SLO | ENG | Cookies and privacy

Bigger font | Smaller font

Show document Help

Title:Scenarij digitalne forenzične preiskave z uporabo odprtokodnih orodij : diplomsko delo visokošolskega študijskega programa Informacijska varnost
Authors:ID Krojsl Golob, Patrik (Author)
ID Hölbl, Marko (Mentor) More about this mentor... New window
Files:.pdf VS_Krojsl_Golob_Patrik_2026.pdf (2,00 MB)
MD5: 0683AE4FF2E6CFA0FA8C1A7CCAA7B57B
 
Language:Slovenian
Work type:Bachelor thesis/paper
Typology:2.11 - Undergraduate Thesis
Organization:FVV - Faculty of Criminal Justice and Security
Abstract:V diplomskem delu je obravnavana zasnova učnega scenarija digitalne forenzične preiskave z uporabo odprtokodnih oziroma prosto dostopnih orodij. Namen dela je pripraviti varen, ponovljiv in didaktično uporaben primer, ki omogoča praktično spoznavanje osnovnih korakov digitalne forenzike. V prvem delu so predstavljeni kibernetski incidenti, digitalna forenzika, digitalni dokazi, odprtokodna in prosto dostopna forenzična orodja ter socialni inženiring kot možen začetni vektor napada. Poudarjen je pomen pravilnega zavarovanja dokaznega gradiva, ohranjanja integritete podatkov, dokumentiranja postopka in povezovanja posameznih digitalnih sledi v smiselno celoto. V drugem delu je zasnovan simuliran incident v informacijskem sistemu namišljenega podjetja NAIVNEŽ d.o.o. Incident temelji na lažnem elektronskem sporočilu, s katerim napadalec pridobi prijavne podatke uporabnika, se prek oddaljenega dostopa prijavi v delovno postajo in iz nje pošlje občutljive dokumente na zunanji elektronski naslov. Po izvedbi incidenta je pripravljena forenzična slika sistema, skupaj z navodili za študente in forenzičnim priročnikom. Scenarij uporabnika vodi skozi preverjanje dokaznega gradiva, analizo elektronske pošte, sledi oddaljenega dostopa, dostopa do dokumentov in rekonstrukcijo časovnice dogodkov. Uporabnik pri tem ne obravnava le posameznih artefaktov, temveč jih mora ustrezno razložiti in povezati z domnevnim potekom incidenta. Ugotovljeno je, da pripravljeni scenarij omogoča ponovljivo izvedbo osnovne digitalne forenzične preiskave in je primeren za uporabo v izobraževalnem okolju. Delo tako prispeva k bolj praktično usmerjenemu poučevanju digitalne forenzike ter k razumevanju uporabnosti odprtokodnih in prosto dostopnih orodij pri obravnavi kibernetskih incidentov.
Keywords:računalniška forenzika, forenzična analiza, informacijska varnost, varnostni incidenti, učni primer, diplomske naloge
Publication status:Published
Publication version:Version of Record
Place of publishing:Ljubljana
Place of performance:Ljubljana
Publisher:P. Krojsl Golob
Year of publishing:2026
Year of performance:2026
Number of pages:VII f., 63 str.
PID:20.500.12556/DKUM-98716 New window
UDC:343.983.2:004(043.2)
COBISS.SI-ID:290250499 New window
Publication date in DKUM:07.09.2026
Views:233
Downloads:5
Metadata:XML DC-XML DC-RDF
Categories:FVV
:
Copy citation
  
Average score:(0 votes)
Your score:Voting is allowed only for logged in users.
Share:Bookmark and Share



Hover the mouse pointer over a document title to show the abstract or click on the title to get all document metadata.

Related works

Is related to
Typology:Research data
Title:Forenzična diskovna slika za scenarij digitalne forenzične preiskave z uporabo odprtokodnih orodij
Forenzična diskovna slika za scenarij digitalne forenzične preiskave z uporabo odprtokodnih orodij. KROJSL GOLOB, Patrik

Licences

License:CC BY-NC-SA 4.0, Creative Commons Attribution-NonCommercial-ShareAlike 4.0 International
Link:http://creativecommons.org/licenses/by-nc-sa/4.0/
Description:A Creative Commons license that bans commercial use and requires the user to release any modified works under this license.
Licensing start date:02.07.2026

Secondary language

Language:English
Title:A scenario of a digital forensic investigation using open-source forensic tools
Abstract:The thesis presents the design of a learning scenario for a digital forensic investigation using open-source and freely available tools. Its main purpose is to create a safe, repeatable, and useful example that helps students understand the basic steps of digital forensics in practice. The theoretical part explains cyber incidents, digital forensics, digital evidence, forensic tools, and spear phishing as a possible starting point of an attack. Special attention is given to the proper handling of evidence, data integrity, documentation of the procedure, and the integration of disparate digital traces into a clear explanation of the incident. The practical part presents a simulated incident in the information system of the fictional company NAIVNEŽ d.o.o. In the scenario, the attacker sends a fake email, obtains the user’s login credentials, connects to the workstation through remote access, and sends sensitive documents to an external email address. After the incident, a forensic image of the system is prepared, together with instructions for students and a forensic manual. The scenario guides the user through verifying evidence, analyzing email, tracing remote access, documenting access, and reconstructing the incident timeline. The user must not only identify individual artifacts but also explain them and connect them to the incident's course. The findings show that the prepared scenario enables a repeatable basic digital forensic investigation and is suitable for educational use.
Keywords:digital forensics, forensic analysis, information security, security incident, case study


Comments

Leave comment

You must log in to leave a comment.

Comments (0)
0 - 0 / 0
 
There are no comments!

Back
Logos of partners University of Maribor University of Ljubljana University of Primorska University of Nova Gorica