在损坏的多媒体卡上就地读取内存的研究案例

IF 2 4区 医学 Q3 COMPUTER SCIENCE, INFORMATION SYSTEMS Forensic Science International-Digital Investigation Pub Date : 2024-02-09 DOI:10.1016/j.fsidi.2024.301698
F. Thomas-Brans , A. Fukami , Q. Clement , Th. Heckmann , D. Sauveron
{"title":"在损坏的多媒体卡上就地读取内存的研究案例","authors":"F. Thomas-Brans ,&nbsp;A. Fukami ,&nbsp;Q. Clement ,&nbsp;Th. Heckmann ,&nbsp;D. Sauveron","doi":"10.1016/j.fsidi.2024.301698","DOIUrl":null,"url":null,"abstract":"<div><p>As the storage requirements of systems have increased, the evolution of data storage technologies has undergone a major shift. System manufacturers have recently switched from traditional flash technology to MultiMedia Cards (MMC), which are embedded memories with a dedicated controller. This technology allows for faster data transfer, greater reliability, and an increase in the storage capacity of a component as well as its lifespan. By design, the main weakness of these medium lies in the controller. If the controller fails to respond, the memory becomes unusable, which may negatively impact the user and the forensic expert who intends to retrieve essential data. The aim of the paper is to provide an overview of MMC technologies through their data transfer protocols. The main contribution is to share a diagnostic approach for extracting data from a flash chip controlled by a defective controller, based on the insights from a case study analysis. This work involves the study of the hardware conception of the MMC system as well as the reverse engineering and manipulations of the board with special equipment like X-Ray tomography, laser ablation, computer numerical control technology and logic analyzer.</p></div>","PeriodicalId":48481,"journal":{"name":"Forensic Science International-Digital Investigation","volume":null,"pages":null},"PeriodicalIF":2.0000,"publicationDate":"2024-02-09","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S2666281724000076/pdfft?md5=444191adee9cab582f0a8cb9307ef0d7&pid=1-s2.0-S2666281724000076-main.pdf","citationCount":"0","resultStr":"{\"title\":\"Case of study for in situ memory reading on damaged MultiMedia Card\",\"authors\":\"F. Thomas-Brans ,&nbsp;A. Fukami ,&nbsp;Q. Clement ,&nbsp;Th. Heckmann ,&nbsp;D. Sauveron\",\"doi\":\"10.1016/j.fsidi.2024.301698\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"<div><p>As the storage requirements of systems have increased, the evolution of data storage technologies has undergone a major shift. System manufacturers have recently switched from traditional flash technology to MultiMedia Cards (MMC), which are embedded memories with a dedicated controller. This technology allows for faster data transfer, greater reliability, and an increase in the storage capacity of a component as well as its lifespan. By design, the main weakness of these medium lies in the controller. If the controller fails to respond, the memory becomes unusable, which may negatively impact the user and the forensic expert who intends to retrieve essential data. The aim of the paper is to provide an overview of MMC technologies through their data transfer protocols. The main contribution is to share a diagnostic approach for extracting data from a flash chip controlled by a defective controller, based on the insights from a case study analysis. This work involves the study of the hardware conception of the MMC system as well as the reverse engineering and manipulations of the board with special equipment like X-Ray tomography, laser ablation, computer numerical control technology and logic analyzer.</p></div>\",\"PeriodicalId\":48481,\"journal\":{\"name\":\"Forensic Science International-Digital Investigation\",\"volume\":null,\"pages\":null},\"PeriodicalIF\":2.0000,\"publicationDate\":\"2024-02-09\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"https://www.sciencedirect.com/science/article/pii/S2666281724000076/pdfft?md5=444191adee9cab582f0a8cb9307ef0d7&pid=1-s2.0-S2666281724000076-main.pdf\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Forensic Science International-Digital Investigation\",\"FirstCategoryId\":\"3\",\"ListUrlMain\":\"https://www.sciencedirect.com/science/article/pii/S2666281724000076\",\"RegionNum\":4,\"RegionCategory\":\"医学\",\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"Q3\",\"JCRName\":\"COMPUTER SCIENCE, INFORMATION SYSTEMS\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Forensic Science International-Digital Investigation","FirstCategoryId":"3","ListUrlMain":"https://www.sciencedirect.com/science/article/pii/S2666281724000076","RegionNum":4,"RegionCategory":"医学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q3","JCRName":"COMPUTER SCIENCE, INFORMATION SYSTEMS","Score":null,"Total":0}
引用次数: 0

摘要

随着系统存储要求的提高,数据存储技术的发展也发生了重大转变。最近,系统制造商已从传统的闪存技术转向带有专用控制器的嵌入式存储器--多媒体卡(MMC)。这种技术可以实现更快的数据传输、更高的可靠性、更大的存储容量以及更长的使用寿命。根据设计,这些介质的主要弱点在于控制器。如果控制器无法响应,存储器就无法使用,这可能会对用户和打算检索重要数据的取证专家造成负面影响。本文旨在通过数据传输协议概述 MMC 技术。本文的主要贡献在于分享一种诊断方法,根据对案例研究的分析结果,从受故障控制器控制的闪存芯片中提取数据。这项工作包括研究 MMC 系统的硬件概念,以及利用 X 射线断层扫描、激光烧蚀、计算机数控技术和逻辑分析仪等特殊设备对电路板进行逆向工程和操作。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
Case of study for in situ memory reading on damaged MultiMedia Card

As the storage requirements of systems have increased, the evolution of data storage technologies has undergone a major shift. System manufacturers have recently switched from traditional flash technology to MultiMedia Cards (MMC), which are embedded memories with a dedicated controller. This technology allows for faster data transfer, greater reliability, and an increase in the storage capacity of a component as well as its lifespan. By design, the main weakness of these medium lies in the controller. If the controller fails to respond, the memory becomes unusable, which may negatively impact the user and the forensic expert who intends to retrieve essential data. The aim of the paper is to provide an overview of MMC technologies through their data transfer protocols. The main contribution is to share a diagnostic approach for extracting data from a flash chip controlled by a defective controller, based on the insights from a case study analysis. This work involves the study of the hardware conception of the MMC system as well as the reverse engineering and manipulations of the board with special equipment like X-Ray tomography, laser ablation, computer numerical control technology and logic analyzer.

求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
CiteScore
5.90
自引率
15.00%
发文量
87
审稿时长
76 days
期刊最新文献
Commentary:- Can I use that tool? Temporal metadata analysis: A learning classifier system approach Uncertainty and error in location traces Competence in digital forensics “What you say in the lab, stays in the lab”: A reflexive thematic analysis of current challenges and future directions of digital forensic investigations in the UK
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1