Consider the following scenario. A new start-up SME (small-medium enterprise) ba
ID: 3744868 • Letter: C
Question
Consider the following scenario.
A new start-up SME (small-medium enterprise) based in Luton with an e-government model has recently begun to notice anomalies in its accounting and product records. It has undertaken an initial check of system log files, and there are a number of suspicious entries and IP addresses with a large amount of data being sent outside the company firewall. The company has also recently received a number of customer complaints saying that there is often a strange message displayed during order processing, and they are redirected to a payment page that does not look legitimate.
You have employed a digital forensic investigator to determine whether any malicious activity has taken place and to ensure that there is no malware within the systems. Your task is to investigate the cause of the problems, and if necessary, to prepare a case against the perpetrators.
The company uses Windows Server 2008 for its servers. Patches are applied by the IT support team on a monthly basis, but the team has noticed that a number of machines do not seem to have been patched.
please address the following:
1.) How you would apply rules and policies in this scenario
2.) The legal aspects with regard to admissibility of digital evidence
3.)Privacy issues when seizing personal mobile devices
Explanation / Answer
EPORT ON SPECUATED THREATS
Below issues evokes a threat for the company that requires immediate action:
Issue1: Anomalies in accounting & product records
Issue2: Number of suspicious entries & IP addresses with a large amount of data being send outside the company firewall as observed in the initial check of system log files.
Issue3: Customer complains about strange messages while order processing that redirects them to illegitimate payment gateways
Issue4: Patches are applied by the IT support team on a monthly basis, but the team has noticed that a number of machines do not seem to have been patched.
Considering above scenarios, and in order to investigate the cause of the problems following proposals require immediate addressing: