Open Sources of Cyberspace as Objects of Forensic Research
DOI:
https://doi.org/10.32353/khrife.2.2024.02Keywords:
cyberspace; open sources of information; computer data; digital evidence; forensic science; forensic expert conclusionAbstract
The purpose of this research paper is to use modern general and special methods of scientific cognition to investigate the procedural procedure for the formation of digital evidence based on open in-formation from cyberspace in the context of evidence during criminal proceedings and to substantiate possibility of forensic expert research of cyberspace to obtain criminally relevant indicative and evidentiary information in the form of a conclusion an expert It is shown that computer data and electronic (digital) information are synonymous and are divided into two groups: neutral that have no significance for criminal proceedings, and criminally relevant, which contain traces of an offense and data about persons, objects, events, facts etc., which have indicative or evidential value. It has been proven that cyberspace is a separate carrier of criminally relevant electronic (digital) information, which under certain legal procedures becomes a source of evidence in criminal proceedings. Such information, transformed into a form accessible to process participants, belongs to digital evidence. It is substantiated that investigative actions provided for by the procedural law are most often unsuitable for searching for criminally relevant information from open sources of cyberspace. It is argued that the main procedural method of forming evidence based on computer data from open sources of cyberspace should be conducting a forensic examination of electronic communications, the object of which is the initial data about the search object, cyberspace, and the subject - facts and information about this object. object In this case, methodological principles of the expert research are the intelligence tools of open OSINT databases, and for recording information, the recommendations of the Berkeley Protocol, taking into account the current legislation of Ukraine. Computer data extracted from open cyberspace sources ac-quire probative value through the opinion of a forensic expert who is a source of evidence.
References
Arshad, H., Omlara, E., Abiodun, I., Aminu, A. (2020). A Semi-Automated Forensic Inves-tigation Model for Online Social Networks. Computers & Security. Vol. 97. Art. 101946. DOI: 10.1016/j.cose.2020.101946.
Avdieieva, H. K., Storozhenko, S. V. (2017). Elektronni slidy : poniattia ta vydy [Electronic traces : concepts and types]. Visnyk Luhanskoho derzhavnoho universytetu vnutrishnikh sprav im. E. O. Didorenka. Vyp. 1 (77). URL: https://luhbulletin.dnuvs. ukr.education/index.php/main/issue/ view/44/42 [in Ukrainian].
Avdeeva, G., Żywucka-Kozlowska, E. (2023). Problems of Using Digital Evidence in Criminal Justice of Ukraine and the USA. Theory and Practice of Forensic Science and Criminalistics. Issue 1 (30). Pp. 126—143. DOI: 10.32353/khrife.1.2023.06.
Berkeley Protocol on Digital Open Source Investigations (2022)/ Human Rights Center, Un. Nat. Human Rights Office of the High Commissioner. New York and Geneva. URL: https://www.ohchr.org/sites/default/files/2024-01/OHCHR_BerkeleyProtocol.pdf.
Bilousov, A. S. (2008). Kryminalistychnyi analiz obiektiv kompiuternykh zlochyniv [Forensic analysis of objects of computer crimes] : dys. … kand. yuryd. nauk. Zaporizhzhia [in Ukrainian].
Borysova, L. V. (2007). Transnatsionalni kompiuterni zlochyny yak obiekt kryminalistychnoho doslidzhennia [Transnational computer crimes as an object of forensic research] : dys. … kand. yuryd. nauk. Kyiv [in Ukrainian].
Butuzov, V. M., Havlovskyi, V. D., Skalozub, L. P., Skulysh, Ye. D., Titunina, K. V., Roma-niuk, B. V. (2011). Orhanizatsiino-pravovi ta taktychni osnovy protydii zlochynnosti u sferi vysokykh informatsiinykh tekhnolohii [Organizational, legal and tactical foundations of combating crime in the field of high information technologies] : navch. posib. / za red. B. V. Romaniuka, Ye. D. Skulysha. Kyiv [in Ukrainian].
Committee on National Security Systems (CNSS). Glossary (2015). CNSSI No. 4009. URL: https://rmf.org/wp-content/uploads/2017/10/CNSSI-4009.pdf.
Hetman, A. P., Atamanova, Yu. Ye., Milash, V. S. ta in. (2016). Pravove rehuliuvannia vidnosyn u merezhi Internet [Legal regulation of relations on the Internet] : monohrafiia / za red. S. V. Hlibka, K. V. Yefremovoi. Kharkiv. URL: https://ndipzir.org.ua/archives/5224 [in Ukrainian].
Holovkin, B. M., Denkovych, O. I., Lutsyk, V. V., Tsekhan, D. M. (2022). Kiberzlochynnist ta elektronni dokazy [Cybercrime and Electronic Evidence] / za red. kand. yuryd. nauk, dots. O. Denkovych, d-r prava, prof. H. Shmeltser. [Elektron. vyd.] Lviv. URL: https://law.lnu.edu.ua/wp-content/ uploads/2023/08/Cybercrime-and-Digital-Evidence.pdf [in Ukrainian].
Hutnyk, A. V., Khytra, A. Ya. (2022). Kryminalni protsesualni ta kryminalistychni osnovy vykorystannia elektronnykh dokumentiv u dokazuvanni [Criminal procedural and forensic bases for the use of electronic documents in evidence] : kol. monohr. Lviv. URL: https://dspace.lvduvs.edu.ua/bitstream/1234567890/4725/1/%D0%93%D1%83%D1%82%D0%BD%D0%B8%D0%BA%2C%20%D0%A5%D0%B8%D1%82%D1%80%D0%B0_%D0%BC%D0%BE%D0%B D%D0%BE%D0%B3%D1%80%D0%B0%D-1%84%D1%96%D1%8F_21_06_2022.pdf [in Ukrainian].
Hutsaliuk, M. V., Havlovskyi, V. D., Khakhanovskyi, V. H. ta in. (2020). Vykorystannia elektronnykh (tsyfrovykh) dokaziv u kryminalnykh provadzhenniakh [Use of electronic (digital) evidence in criminal proceedings] : metod. rek. / za zah. red. O. V. Korneika. Kyiv [in Ukrainian].
Jones, N., George, E., Mérida, F. I., Rasmussen, U., Völzow, V. (2014). Electronic Evidence Guide. A Basic Guide for Police Officers, Prosecutors and Judges. Version 2.0. Cybercrime Division Directorate General of Human Rights and Rule of Law. Strasbourg, France. URL: https://au.int/sites/default/files/newsevents/workingdocuments/34122-wd-annex_4_-_electronic_evidence_guide_2.0_final-complete.pdf.
Khyzhniak, Ye. S. (2017). Poniattia virtualnykh slidiv ta yikh znachennia u protsesi rozsliduvannia zlochyniv [The concept of virtual traces and their importance in the process of investigating crimes]. Aktualni problemy derzhavy i prava. № 79. URL: https://dspace.onua.edu.ua/server/api/core/bitstreams/d43d895a-0cc7-4c06-9705-3b48054ecd84/content [in Ukrainian].
Korshenko, V. A. (2017). Teoretychni ta metodychni osnovy sudovoi telekomunikatsiinoi ekspertyzy [Theoretical and methodical foundations of forensic telecommunications examination] : avtoref. dys. … kand. yuryd. nauk. Kharkiv. URL: https://dspace.univd.edu.ua/server/api/core/bitstreams/ae3bf4b6-9291-451f-bc4c-ccb5091a79e8/content [in Ukrainian].
Kovalenko, A. V. (2022). Poniattia ta sutnist elektronnykh (tsyfrovykh) slidiv kryminalnoho pravoporushennia [Concept and essence of electronic (digital) traces of a criminal offense]. Visnyk Luhanskoho derzhavnoho universytetu vnutrishnikh sprav im. E. O. Didorenka. Vyp. 4 (100). DOI: 10.33766/2524-0323.100.226-236 [in Ukrainian].
Kovalenko, A. V. (2023). Orhanizatsiia i taktyka provedennia ohliadu kompiuternykh danykh [Organization and tactics of computer data review]. Naukovyi visnyk Khersonskoho derzhavnoho universytetu. Seriia Yurydychni nauky. Vyp. 4. DOI: 10.32999/ksu2307-8049/2023-4-9 [in Ukrainian].
Malakhova, O. V. (2017). Do pytannia ohliadu storonamy kryminalnoho provadzhennia zmistu Internetstorinok [On the issue of reviewing the content of Internet pages by the parties to the criminal proceedings]. Visnyk kryminalnoho sudochynstva. № 2. URL: https://vkslaw.knu.ua/images/verstka/2_2017_Malahova.pdf [in Ukrainian].
Motliakh, O. I. (2005). Pytannia metodyky rozsliduvannia zlochyniv u sferi informatsiinykh kompiuternykh tekhnolohii [Issue of the methodology of the investigation of crimes in the field of information computer technologies] : dys. … kand. yuryd. nauk. Kyiv [in Ukrainian].
Mykhalchuk, T. V. (2009). Vykorystannia informatsii, otrymanoi telekomunikatsiinym shliakhom, u rozsliduvanni zlochyniv [Use of information obtained by telecommunications in the investigation of crimes] : dys. … kand. yuryd. nauk. Kyiv [in Ukrainian].
Palamarchuk, L. P. (2004). Kryminalistychne zabezpechennia rozsliduvannia nezakonnoho vtruchannia v robotu elektronno-obchysliuvanykh mashyn (kompiuteriv), system ta kompiuternykh merezh [Forensic support of the investigation of illegal interference in the operation of electronic computing machines (computers), systems and computer networks] : dys. … kand. yuryd. nauk. Kyiv [in Ukrainian].
Ragni, Ch. (2023). Digital Evidence in international Criminal Proceedings and Human Rights Challenges. Law in the Age of Modern Technologies : International Scientific Conference on International, EU and Comparative Law Issues. Art. 7:1—16. DOI: 10.25234/eclic/28255.
Ribaux, О., Baechler, S., Rossy, Q. (2022). Forensic Intelligence and Traceology in Digitalized Environments: The Detection and Analysis of Crime Patterns to Inform Practice / Handbook of Security. Ed. by M. Gill. 3rd ed. DOI: 10.1007/978-3-030-91735-7_47.
Samoilenko, O. A. (2020). Osnovy metodyky rozsliduvannia zlochyniv, vchynenykh u ki-berprostori [The basics of the methodology of investigating crimes committed in cyberspace] : monohrafiia / za zah. red. A. F. Volobuieva. Odesa. URL: https://dspace.onua.edu.ua/server/api/core/bitstreams/6d9682a6-f1ab-49a5-a609-6ca96ce3c96f/content [in Ukrainian].
Simakova-Yefremian, E. B. (2016). Kompleksni sudovo-ekspertni doslidzhennia: teoriia ta praktyka [Comprehensive forensic research: theory and practice] : monohrafiia. Kharkiv [in Ukrainian].
Skrypnyk, A. V. (2021). Vykorystannia informatsii z elektronnykh nosiiv u kryminalnomu protsesualnomu dokazuvanni [Use of information from electronic media in criminal procedural evidence] : dys. … d-ra filos. u haluzi prava. Kharkiv [in Ukrainian].
Stepaniuk, R. L., Kolesnyk, V. H. (2023). Sudova kompiuterno-tekhnichna ekspertyza: stan i perspektyvy rozvytku [Forensic computer-technical expertise: status and prospects for development]. Visnyk Luhanskoho derzhavnoho universytetu vnutrishnikh sprav im. E. O. Didorenka. Vyp. 2 (102). DOI: 10.33766/2524-0323.102.289-305 [in Ukrainian].
Teplytskyi, B. B. (2021). Aktualni pytannia pryznachennia ekspertyzy kompiuternoi tekh-niky i prohramnykh produktiv pid chas rozsliduvannia zlochyniv u sferi vykorystannia elektronno-obchysliuvalnykh mashyn (kompiuteriv), system, kompiuternykh merezh i merezh elektrozviazku [Actual issues of appointment of examination of computer equipment and software products during the investigation of crimes in the field of use of electronic computing machines (computers), systems, computer networks and telecommunications networks]. Naukovyi visnyk Natsionalnoi akademii vnutrishnikh sprav. № 3 (120). T. 26. DOI: 10.33270/01211203.28 [in Ukrainian].
Teplytskyi, B. B. (2021). Tekhniko-kryminalistychne zabezpechennia rozsliduvannia zlochyniv u sferi vykorystannia elektronno-obchysliuvalnykh mashyn (kompiuteriv), system ta kompiuternykh merezh i merezh elektrozviazku [Technical and forensic support for the investigation of crimes in the field of use of electronic computing machines (computers), systems and computer net-works and telecommunication networks] : dys. … kand. yuryd. nauk. Kyiv. URL: https://elar.naiau.kiev.ua/server/api/core/bitstreams/02fe1a3e-438b-4f1c-8800-3e745db75e8b/content [in Ukrainian].
Teplytskyi, B. B., Sharai, L. H., Kovalov, K. M., Kuzmin, S. A. ta in. (2019). Zlochyny u sfe ri vykorystannia elektronno-obchysliuval nykh mashyn (kompiuteriv), system ta kompiuternykh merezh i merezh elektrozviazku: spetsialni pytannia kvalifikatsii, provedennia slidchykh (rozshukovykh) dii, pryznachennia kompiuterno-tekhnichnykh sudovykh ekspertyz [Crimes in the field of use of electronic computing machines (computers), systems and computer networks and telecommunications net-works: special questions of qualification, conducting investigative (search) actions, appointment of computer and technical forensic examinations] : nauk.-prakt. posib. Kyiv [in Ukrainian].
Torbas, O. O. (2024). OSINT pry rozsliduvanni kryminalnykh pravoporushen [OSINT in the investigation of criminal offenses] : pidruchnyk. Odesa. URL: https:// dspace.onua.edu.ua/server/api/core/bitstreams/106c5467-2afb-4055-a0fb-3a500102db9c/content [in Ukrainian].
Tsekhan, D. M. (2011). Vykorystannia vysokykh informatsiinykh tekhnolohii v operatyvno-rozshukovii diialnosti orhaniv vnutrishnikh sprav [The use of advanced information technologies in the operational and investigative activities of internal affairs bodies] : monohrafiia. Odesa [in Ukrainian].
Voiuie na Zaporizkomu napriamku: OSINT-sektsii hrupy «IS» vstanovyla dani voiennoho zlochyntsia (2024) [Fighting in the Zaporizhzhia direction: the OSINT section of the «IS» group established the data of a war criminal] / Informatsiinyi sprotyv. URL: https://sprotyv.info/news/voyu%d1%94-na-zaporizkomu-napryamku-osint-sekczi%d1%97-grupi-is-vstanovila-dani-vo%d1%94nnogo-zlochinczya/ [in Ukrainian].
Voloshyna, M. O., Shendryk, V. V. (2019). Suchasni sposoby operatyvnoho poshuku pervynnoi operatyvno-rozshukovoi informatsii pidrozdilamy kryminalnoi politsii [Modern methods of operative search of primary operational investigative information by units of the criminal police]. Pivdennoukrainskyi pravnychyi chasopys. № 4. Ch. 1. DOI: 10.32850/sulj.2019.4.1.3 [in Ukrainian].
Zhurba, A. I. (2008). Osoblyvosti predmeta dokazuvannia u spravakh pro kompiuterni zlochyny [Peculiarities of the subject of evidence in cases of computer crimes] : dys. … kand. yuryd. nauk. Kharkiv [in Ukrainian].
