Enhancing Cloud Incident Response: Addressing Evidence Data Collection Challenges in Cloud Environments
摘要
The growing use of cloud computing brings new challenges in handling security incidents, especially when it comes to collecting and managing evidence. This research explores these challenges, focusing on the incident response process and how evidence collection impacts the quality of responses and the effectiveness of cyber attack mitigation. By analyzing existing frameworks and approaches in cloud forensics, the study highlights key issues such as delays in log retrieval and the complexities of multi-tenant cloud environments. It also examines potential solutions to improve data collection and forensic analysis by reviewing current technologies and practices. The findings emphasize the need for better real-time data processing and incident analysis techniques to strengthen response strategies in cloud environments. Ultimately, this paper aims to support the advancement of more robust cloud forensic practices.