Politehnika i dizajn, Vol. 13 No. 2, 2025.
Stručni rad
https://doi.org/10.19279/TVZ.PD.2025-13-2-19
SOLVING THE NIST HACKING CASE
Jan Lamza
; Tehničko veleučilište u Zagrebu, Vrbik 8, 10000 Zagreb, Hrvatska, student
*
Damir Delija
; Tehničko veleučilište u Zagrebu, Vrbik 8, 10000 Zagreb, Hrvatska
*
* Dopisni autor.
Sažetak
The paper aims to present the resolution of a hacking case prepared by the National Institute of Standards and Technology (NIST) using the forensic tool Autopsy. A simulation of a real incident prepared by the National Institute of Standards and Technology is presented and is available to the public for learning and certification purposes. The case was discovered on September 20, 2004, when an Dell CPI laptop with serial number VLQLW, a wireless PCMCIA card and a home-made external 802.11b antenna was found. It is assumed that the computer was used for unauthorised access purposes, where suspect Greg Schardt (pseud. Mr. Evil) parked his vehicle within range of wireless access points (Starbucks, T-mobile Hotspot) and intercepted Internet traffic in an attempt to obtain credit card numbers, user names and passwords. This paper includes scenario analysis, identification of key clues and artifacts of the previously described scenario, using the free Autopsy tool. The work aims to prove by means of hard disk data analysis that Greg Schardt truly is a hacker under the pseudonym „Mr. Evil“.
Ključne riječi
forensic analysis; Autopsy; incident simulation; hacking case
Hrčak ID:
344935
URI
Datum izdavanja:
21.10.2025.
Posjeta: 258 *