Automated Virtualization in Digital Forensic and Penetration Testing Work

dc.contributor.authorAndersson, Eric
dc.contributor.departmentChalmers tekniska högskola / Institutionen för data och informationstekniksv
dc.contributor.examinerAlmström Duregård, Jonas
dc.date.accessioned2019-07-10T12:08:09Z
dc.date.available2019-07-10T12:08:09Z
dc.date.issued2019sv
dc.date.submitted2019
dc.description.abstractVirtualization technology has in recent years gained significant popularity in the information technology industry, and despite its widespread use all areas of application have not yet been discovered. This thesis is done by request of the company Secure- Link where they want to build a centralized system for the automatic creation and management of standardized virtual machines used in digital forensic and penetration testing work. The aim of this work has been to, based on a given specification, assemble and demonstrate a virtualization software suite for use in this system. The produced solution is referred to as the virtualization stack and uses KVM/QEMU as the hypervisor (the software that creates and runs virtual machines), libvirt to configure the virtual machines, and Vagrant to manage entire virtual environments using single commands. As part of the work virtual machine templates suitable for both digital forensic work and penetration testing have been developed, and workflow automation examples that use the virtualization stack to perform example assignments have been created. The solution is shown to be scalable and modular while allowing a high degree of automation. The presented solution can either be used in its current state or implemented into a larger program that adds additional functionality. The final product meets all the given system specifications except for those relating to standards in digital forensic investigations. Suggestions for further work is to build a front-end used to generate virtual environments according to specifications made by the user instead of using static configuration files, and to add features that meet more of the standards required in digital forensic work.sv
dc.identifier.coursecodeLMTX38sv
dc.identifier.urihttps://hdl.handle.net/20.500.12380/300023
dc.language.isoengsv
dc.setspec.uppsokTechnology
dc.subjectVirtualizationsv
dc.subjecthypervisorsv
dc.subjectvirtual machinessv
dc.subjectdigital forensicssv
dc.subjectpenetration testingsv
dc.titleAutomated Virtualization in Digital Forensic and Penetration Testing Worksv
dc.type.degreeExamensarbete på grundnivåsv
dc.type.uppsokM
Ladda ner
Original bundle
Visar 1 - 1 av 1
Hämtar...
Bild (thumbnail)
Namn:
CSE 19-10 CPL Andersson.pdf
Storlek:
1.19 MB
Format:
Adobe Portable Document Format
Beskrivning:
CSE Andersson
License bundle
Visar 1 - 1 av 1
Hämtar...
Bild (thumbnail)
Namn:
license.txt
Storlek:
1.14 KB
Format:
Item-specific license agreed upon to submission
Beskrivning: