Free Papers/Reports on Forensics and Security from NIJ

Free papers/reports on Forensics and Security from National Institute of Justice (NIJ)

NIJ is the research, development, and evaluation agency of the U.S. Department of Justice and is dedicated to researching crime control and justice issues. NIJ provides objective, independent, evidence-based knowledge and tools to meet the challenges of crime and justice, particularly at the State and local levels. NIJ’s principal authorities are derived from the Omnibus Crime Control and Safe Streets Act of 1968, as amended (see 42 USC § 3721-3723) and Title II of the Homeland Security Act of 2002.

Mission:

Advance scientific research, development, and evaluation to enhance the administration of justice and public safety.

Here some recently publication from NIJ:

See NIJ Publications for more documents.

Test Results for Digital Data Acquisition Tool: IXimager (Version 2.0, Feb-01 2006)
April 2007
Posted April 30, 2007

IXimager (Version 2.0, Feb-01 2006)This NIJ Special Report presents the results from testing the IXimager (Version 2.0, Feb-01 2006) against Digital Data Acquisition Tool Assertions and Test Plan Version 1.0. It documents results by test assertion, describes the testing environment, provides an interpretation of the test results, and includes test results summary log files for numerous test cases. The results provide the information necessary for developers to improve tools, users to make informed choices, and the legal community and others to understand the tools’ capabilities. (NCJ 217103)

Full Text pdf

Voice Encryption for Radios
March 2007
Posted March 30, 2007

Voice Encryption for RadiosThis NIJ InShort fact sheet gives an overview of the weaknesses unencrypted voice transmissions face and outlines how voice encryption helps ensure that voice transmissions are secure and accessible only by authorized personnel. Effective management is crucial to successfully implementing an encrypted voice network, and the fact sheet indicates the differences between managing a small versus a large network. (NCJ 217103)

Full Text pdf

Migrating From Cellular Digital Packet Data
March 2007
Posted March 30, 2007

Migrating From Cellular Digital Packet DataPublic safety agencies that use commercial cellular digital packet data (CDPD) will soon be forced to migrate to another method of communication. This NIJ InShort fact sheet gives an overview of the obstacles that agencies will face during the CDPD phase out, and it indicates factors that should be considered when migrating to a new service. (NCJ 217104)
Full Text pdf

Interoperability Gateways/Interconnects
March 2007
Posted March 30, 2007

Voice Encryption for RadiosInterconnect systems, such as gateways, allow for voice interoperability between otherwise incompatible radio communications systems. This NIJ InShort fact sheet details how gateways work and gives key factors that can affect performance. The fact sheet also outlines the steps to deploying a gateway and summarizes the two primary aspects of gateway management. (NCJ 217105)
Full Text pdf

Test Results for Three Tableau Hardware Write Block Devices
January 2007
Posted January 25, 2007

Test Results for Hardware Write Block DeviceThese NIJ Special Reports present the results from testing three Tableau Hardware Write Block devices against Hardware Write Blocker (HWB) Assertions and Test Plan Version 1.0. They document results against four top-level tool requirements identified by the specification and several test assertions related to those requirements, describe the testing environment, provide an interpretation of the test results, and include test results summary log files for numerous test cases. The results provide the information necessary for developers to improve tools, users to make informed choices, and the legal community and others to understand the tools’ capabilities.

Full Text

NIJ Journal Issue No. 256
January 2007
Posted January 17, 2007 NIJ Journal 256 coverNIJ programs make a difference in the lives of individual Americans. Two articles in this issue of the Journal highlight this. The lead story describes the Center for Human Identification, an NIJ-funded project that provides free DNA testing on unidentified human remains for any law enforcement agency in the country, helping to solve more missing persons cases. The second story highlights the work of the Kinship and Data Analysis Panel, a group of forensic experts convened by NIJ after 9/11 to help identify victims of the World Trade Center attacks-and, now, to advise the Nation in how to be better prepared to identify victims of a future mass disaster.

Other articles feature:

  • An online training program—designed particularly for judges, prosecutors, and defense attorneys—that explains the use of DNA, from the crime scene to post-conviction testing.
  • Key factors that influence the public’s perception of the police.
  • New findings revealing that many women who are physically abused by their sexual partners are also sexually assaulted by those partners.

Full Text

Digital Evidence in the Courtroom: A Guide for Law Enforcement and Prosecutors
By National Institute of Justice
January 2007
Posted January 16, 2007A Guide for Law Enforcement and Prosecutors coverNow essential to modern life, computers have also become increasingly important to criminals, who steal information, commit fraud, and stalk victims online. Even if a crime was not committed online, law enforcement may discover critical evidence from an offenders’ digital media. For this evidence to be admissible, however, police must demonstrate proper collection and handling. In the courtroom, prosecutors must overcome the twin barriers of skepticism and lack of technical understanding. To help navigate this complex process, NIJ’s technical working group of national experts prepared this special report. Chapters 1 and 2 inform crime scene investigators and other handlers about legal requirements for the handling of digital evidence. Chapters 3 and 4 provide guidelines for successful prosecution. The last chapter is a working application—using digital evidence to convict in a child pornography case. Appendixes provide useful resources and forms.

Full Text:

Asian Transnational Organized Crime and Its Impact on the United States
By James O. Finckenauer and Ko-lin Chin
January 2007
Posted January 12, 2007

Asian Transnational Organized Crime and Its Impact on the United States coverAsian Transnational Organized Crime and Its Impact on the United States reports on a study undertaken to preliminarily assess the impact of Asian transnational organized crime on the United States while, at the same time, determining high-priority areas for further research and identifying potential collaborative research partners and sources of relevant data and information in Asia. The first chapter of this monograph describes the divergent perceptions of Asian transnational organized crime held by Asian versus American interviewees, and also offers a researcher’s perspective. The second chapter explains the scope and patterns of Asian organized crime. The final chapter offers the researchers’ initial assessment of the impact of Asian transnational organized crime on the United States and U.S. interests.

Full Text:

Investigations Involving the Internet and Computer Networks
By National Institute of Justice
January 2007
Posted January 12, 2007

Investigations Involving the Internet and Computer Networks coverThis NIJ Special Report is intended as a resource for individuals responsible for investigations involving the use of the Internet and other computer networks. Any crime could involve devices that communicate through the Internet or through a network. Criminals may use the Internet for numerous reasons, including trading/sharing information (e.g., documents, photographs), concealing their identity, and gathering information on victims. The report is among a series of guides on investigating electronic crime.

Full Text

Encryption Links from geschonneck.com

Encryption

  • RFC 1847 Security Multiparts for MIME: Multipart/Signed and Multipart/Encrypted
  • RFC2311 S/MIME Version 2 Message Specification
  • RFC2312 S/MIME Version 2 Certificate Handling

 

  • S/MIME Working Group
  • S/MIME Interoperability Center (RSA)
  • S/MIME Interoperability Matrix
  • S/MIME and PGP/MIME
  • SET specs
  • Transport Layer Security TLS
  • OpenPGP
  • PKI linklist at PKI-Page.org
  • SSL-Check!
  • Cryptography and Microsoft Public Key Infrastructure with Windows 2000
  • MS Windows 2000 Public Key Infrastructure Whitepaper
  • PKI Deployment Information page
  • PKI-COORD PKI Coordination for Europe
  • CA-Cookbooks
  • X.509
  • smart cards
  • infos about X.500, LDAP and directory servers
  • SSL/X.509 tools
  • Crypto misc
  • German Law
  • PKI misc
  • Aufwand beim Betrieb einer Uni-CA
  • PGP Public Key Server
  • Pustaka/paper Kriptografi 2001 (collected by Bruce Schneier)

    Kumpulan/koleksi paper kriptografi tahun 2001 oleh Bruce Schneier (Pakar dan Penulis buku mengenai kriptografi)

    A. Back, U. Möller, and A. Stiglic, Traffic Analysis Attacks and Trade-Offs in Anonymity Providing Systems, Proceedings of the 4th Information Hiding Workshop (IHW2001), Springer-Verlag, LNCS v. 2137, pp. 243-254. [.pdf]

    N. Courtois, M. Finiasz, and N. Sendrier, How to achieve a McEliece-based Digital Signature Scheme, Asiacrypt 2001. Preprint published as Inria rapport de recherche 4118, February 2001.

    N. Courtois, The Security of Cryptographic Primitives Based on Multivariate Algebraic Problems: MQ, MinRank, IP, HFE. PhD thesis, Paris 6 university, September 25th 2001. In French. [.pdf]

    N. Courtois, Efficient Zero-knowledge authentication based on a linear algebra problem MinRank, Asiacrypt 2001. [.pdf] [.ps]

    N. Courtois, The security of Hidden Field Equations (HFE), Topics in Cryptology - CT-RSA 2001: The Cryptographer’s Track at RSA Conference 2001 San Francisco, CA, USA, April 8-12, 2001 Proceedings, LNCS2020, Springer-Verlag. [.pdf] [.ps]

    D. Davis, Defective Sign & Encrypt in S/MIME, PKCS#7, MOSS, PEM, PGP, and XML, Proceedings of Usenix Technical Conference 2001. [.ps]

    H. Lipmaa and S. Moriai, Efficient Algorithms for Computing Differential Properties of Addition, Fast Software Encryption 2001 workshop, Yokohama, Japan, 2-4 April 2001.

    M. Pudovkina, A known plaintext attack on the ISAAC keystream generator, Cryptology ePrint Archive, Report 2001/049, 2001.

    M. Rusinowitch and M. Turuani, Protocol Insecurity with Finite Number of Sessions is NP-complete, 14th IEEE Computer Security Foundations Workshop, June 11-13, 2001 Cape Breton, Nova Scotia, Canada. [.ps]

    A. Stiglic, Computations with a Deck of Cards (preprint version), Theoretical Computer Science, v. 259 (1-2), 2001, pp. 671-678. [.pdf]

    Untuk kumpulana koleksi dari Bruce Schneier dari tahun 1978 - 2003 silahkan lihat di http://www.schneier.com/biblio/

    Ditulis dalam Cryptography, Information Systems and Technology. Comments Off

    Kriptografi berbasis Jaringan Saraf (Neural Network)

    Ulasan paper Prof. W. Kinzel mengenai Kriptografi berbasis Jaringan Saraf

    Lebih detail (lihat halaman ini)

    Cryptography based on Interacting Neural Network

    Pendahuluan

    Jaringan neural belajar dari contoh. Konsep ini telah secara ekstensif dipelajari dengan menggunakan model dan metoda dari ilmu fisika statistik. Khususnya skenario jaringan feedforward dilatih dengan contoh yang dihasilkan oleh suatu jaringan yang berbeda.

    Jaringan feedforward menggolongkan data dimensional tinggi, di kasus yang paling sederhana keluaran tunggal bit (1/0, wrong/correct, yes/no). Jaringan ini adalah algoritma yang adaptip, parameter mereka(pembobotan synaptic) mengadaptasikan persis sama satuan contoh pelatihan, dalam kasus ini satu set input/output pasangan. Setelah tahap pelatihan, jaringan sudah mencapai beberapa pengetahuan tentang aturan dari contoh itu, jaringan dapat menggolongkan vektor masukan yang tidak pernah telah dilihat sebelumnya, sehingga diakatakan dapat mengheneralisasi.

    Beberapa model matematika yang dipelajari sebelum contoh pelatihan digunakan, dihasilkan oleh suatu jaringan neural yang berbeda, yang disebut sebagai “guru”. Pelatihan on-line berarti “siswa”, pada masing-masing langkah pelatihan, menerima suatu contoh yang baru dari jaringan guru. Masing-masing contoh digunakan hanya sekali ketika untuk pelatihan. Dalam hal ini pelatihan mungkin digunakan sebagai dinamika dari jaringan neural yang saling berinteraksi: Sebuah jaringan guru mengirimkan isyarat (contoh) kepada jaringan siswa yang kemudian secara berurut mengubah pembobotannya menurut pesan yang diterima.

    Metoda matematis telah dikembangkan untuk mengkalkulasi kekayaan dari dinamika dari jaringan yang saling berinteraksi. Di batas dari jaringan besar seseorang dapat menguraikan sistem oleh suatu penyamaan diferensial untuk beberapa “parameter benahan” yang menentukan, sebagai contoh, generalisasi kesalahan sebagai fungsi dari jumlah contoh pelatihan.

    Dalam tulisan ini dipaparkan suatu teori dari jaringan neural yang saling berinteraksi. Model akan digambarkan pada bagian 2. Skenario Teacher/Student dijelaskan pada bagian 3. Pada sebuah jaringan guru yang statis pada kasus dari jaringan yang berlapis-lapis, siswa menunjukkan suatu transisi dari suatu status yang simetris ke spesialisasi. Jaringan neural dapat juga menghasilkan suatu gugus berkala. Penggambaran kesimpulan dan rangkaian pelatihan tepat waktu ditunjukkan pada bagian 4

    Lebih detail (lihat halaman ini)

    Ditulis dalam Cryptography. 2 Komentar »