Proactive cyber defense through a comprehensive forensic layer for cybercrime attribution
摘要
The extension of digital competences in the ever-changing world of technology has transported global organizations new opportunities like never before. But this expansion has also flickered a dramatic surge in cybercrime, which carriages a huge problem that needs inventive replies. The current methods of cybercrime investigation are inadequate, predominantly when it comes to finding the source of attacks. While SSL safeguards secure data transmission, it does not offer forensic support, and the TCP/IP protocol suite does not form any protocols that are intended to be operative in cybercrime investigations. To rectify these difficulties, this paper proposes adding a forensic layer below the SSL layer. This novel feature consists of three protocols that reinforce user authentication and verification: IVAP, which is intended to brace the authentication and identification; Pro_DEC, which confirms that digital evidence is composed in a forensically comprehensive manner; and Cybercrime Attribution, which supports to attribute cybercrimes by tracking the source and path of data packets. The steadiness of court procedures amended by these protocols, which bid a specific toolbox for precise threat tracing and acknowledgement. Enhanced fact-finding capabilities and national safety are the main outcomes of this preventative approach to shore up cybersecurity and make systems tougher in the face of ever-changing cyber threats.