Implementation of Anti Forensics on Hard Drives Using the DoD 5220.22 M Method and British HMG IS5 E

The process of securing data is related to anti-forensic science, one of the anti-forensic techniques that can be used to safeguard data security, namely by deleting data on storage media. This study examines the implementation of data deletion using the DoD 5220.22 M and British HMG IS5 E methods,...

Full description

Bibliographic Details
Main Authors: Muh Fadli Hasa, Anton Yudhana, Abdul Fadlil
Format: Article
Language:English
Published: Ikatan Ahli Informatika Indonesia 2020-08-01
Series:Jurnal RESTI (Rekayasa Sistem dan Teknologi Informasi)
Subjects:
Online Access:http://jurnal.iaii.or.id/index.php/RESTI/article/view/2165
_version_ 1797333067953602560
author Muh Fadli Hasa
Anton Yudhana
Abdul Fadlil
author_facet Muh Fadli Hasa
Anton Yudhana
Abdul Fadlil
author_sort Muh Fadli Hasa
collection DOAJ
description The process of securing data is related to anti-forensic science, one of the anti-forensic techniques that can be used to safeguard data security, namely by deleting data on storage media. This study examines the implementation of data deletion using the DoD 5220.22 M and British HMG IS5 E methods, then compares these methods. The comparison of the two methods includes performance tests, forensic tests, and data recovery tests. The results of the performance test show that the two methods are strongly influenced by the anti-forensic tools used and do not provide a significant difference when applied using one of the tools. The results of the implementation of data deletion using both methods on the hard disk drive are declared safe to delete data, as evidenced by the extraction results in the forensic test using the Autopsy tool found files on the partition :F with the number of 252 files and on the partition :I with the number of 1 file and the extraction results from the test Forensics using the Recover My File tool managed to find files with the number of 102 files on different partitions, but all the files found in the forensic test process cannot be accessed. The results of the recovery test show that the safest method in the process of deleting data is the British HMG IS5 E method using the Active @ Kill Disk tool, as evidenced by all the results of the recovery process using three tools that do not find any files. Meanwhile, the application of the deletion method that is generally carried out by users, namely the shift + delete method, is declared unsafe, as evidenced by the results of the recovery tests conducted showing that the deleted files can be recovered 100% and can be reaccessed using recovery tools.
first_indexed 2024-03-08T07:58:28Z
format Article
id doaj.art-31bdc106ffc445aa994634a42439bc90
institution Directory Open Access Journal
issn 2580-0760
language English
last_indexed 2024-03-08T07:58:28Z
publishDate 2020-08-01
publisher Ikatan Ahli Informatika Indonesia
record_format Article
series Jurnal RESTI (Rekayasa Sistem dan Teknologi Informasi)
spelling doaj.art-31bdc106ffc445aa994634a42439bc902024-02-02T13:03:34ZengIkatan Ahli Informatika IndonesiaJurnal RESTI (Rekayasa Sistem dan Teknologi Informasi)2580-07602020-08-014473674410.29207/resti.v4i4.21652165Implementation of Anti Forensics on Hard Drives Using the DoD 5220.22 M Method and British HMG IS5 EMuh Fadli Hasa0Anton Yudhana1Abdul Fadlil2Universitas Ahmad DahlanUniversitas Ahmad DahlanUniversitas Ahmad DahlanThe process of securing data is related to anti-forensic science, one of the anti-forensic techniques that can be used to safeguard data security, namely by deleting data on storage media. This study examines the implementation of data deletion using the DoD 5220.22 M and British HMG IS5 E methods, then compares these methods. The comparison of the two methods includes performance tests, forensic tests, and data recovery tests. The results of the performance test show that the two methods are strongly influenced by the anti-forensic tools used and do not provide a significant difference when applied using one of the tools. The results of the implementation of data deletion using both methods on the hard disk drive are declared safe to delete data, as evidenced by the extraction results in the forensic test using the Autopsy tool found files on the partition :F with the number of 252 files and on the partition :I with the number of 1 file and the extraction results from the test Forensics using the Recover My File tool managed to find files with the number of 102 files on different partitions, but all the files found in the forensic test process cannot be accessed. The results of the recovery test show that the safest method in the process of deleting data is the British HMG IS5 E method using the Active @ Kill Disk tool, as evidenced by all the results of the recovery process using three tools that do not find any files. Meanwhile, the application of the deletion method that is generally carried out by users, namely the shift + delete method, is declared unsafe, as evidenced by the results of the recovery tests conducted showing that the deleted files can be recovered 100% and can be reaccessed using recovery tools.http://jurnal.iaii.or.id/index.php/RESTI/article/view/2165anti forensik, british hmg is5 e, dod 5220.22 m, keamanan data
spellingShingle Muh Fadli Hasa
Anton Yudhana
Abdul Fadlil
Implementation of Anti Forensics on Hard Drives Using the DoD 5220.22 M Method and British HMG IS5 E
Jurnal RESTI (Rekayasa Sistem dan Teknologi Informasi)
anti forensik, british hmg is5 e, dod 5220.22 m, keamanan data
title Implementation of Anti Forensics on Hard Drives Using the DoD 5220.22 M Method and British HMG IS5 E
title_full Implementation of Anti Forensics on Hard Drives Using the DoD 5220.22 M Method and British HMG IS5 E
title_fullStr Implementation of Anti Forensics on Hard Drives Using the DoD 5220.22 M Method and British HMG IS5 E
title_full_unstemmed Implementation of Anti Forensics on Hard Drives Using the DoD 5220.22 M Method and British HMG IS5 E
title_short Implementation of Anti Forensics on Hard Drives Using the DoD 5220.22 M Method and British HMG IS5 E
title_sort implementation of anti forensics on hard drives using the dod 5220 22 m method and british hmg is5 e
topic anti forensik, british hmg is5 e, dod 5220.22 m, keamanan data
url http://jurnal.iaii.or.id/index.php/RESTI/article/view/2165
work_keys_str_mv AT muhfadlihasa implementationofantiforensicsonharddrivesusingthedod522022mmethodandbritishhmgis5e
AT antonyudhana implementationofantiforensicsonharddrivesusingthedod522022mmethodandbritishhmgis5e
AT abdulfadlil implementationofantiforensicsonharddrivesusingthedod522022mmethodandbritishhmgis5e