信息安全研究 ›› 2016, Vol. 2 ›› Issue (4): 339-342.

• 电子数据取证专题 • 上一篇    下一篇

一种基于安卓系统的手机侧抓包分析方法

危蓉   

  1. 湖北警官学院
  • 收稿日期:2016-04-14 出版日期:2016-04-15 发布日期:2016-04-14
  • 通讯作者: 危蓉
  • 作者简介:硕士,讲师,主要研究方向为计算机科学、网络安全. oxfordwr@126.com

An Analytical Method of Mobile Phone Packet Capture Based on Android System

  • Received:2016-04-14 Online:2016-04-15 Published:2016-04-14

摘要: 针对在终端动态取证和测试工作中抓包分析困难的问题,给出了一种基于通用终端使用的手机侧抓包分析方法,该方法利用云技术架构、用户行为分析理念、终端基带信令分析技术和IP通信包分析技术,可实现对手机终端进行定位和分析取证.

关键词: 手机取证, 抓包, 终端, 安卓系统

Abstract: Aiming at the difficult problems about the forensic and the packet capture analysis of the terminals, an analytical method of mobile phone packet capture based on Android system is presented. By applying the cloud architecture, user behavior analysis concept, terminal baseband signal analysis technology, and IP communication packet analysis technology, the method can locate, forensic and analyze the terminals.

Key words: mobile phone forensic, packet capture, terminals, Android system