ISO/IEC 27037:2012 Information Technology — Security Techniques — Guidelines for Identification, Collection, Acquisition and Preservation of Digital Evidence¶
International Organization for Standardization, I. E. C. (2012). ISO/IEC 27037:2012 Information Technology — Security Techniques — Guidelines for Identification, Collection, Acquisition and Preservation of Digital Evidence.
Cited by¶
1 citation across 1 artifact.
Each citation links to the sentence it supports in the citing article.
Mechanisms¶
- Evidence Docket
- Its failure mode is a record that is bounded on paper but porous in practice — where provenance is thin and items can be swapped, backdated, or quietly added, so the chain of custody is broken and the record no longer proves what it claims to hold.
This sourceInternational Organization for Standardization, Edition 1, 38 pp.. https://www.iso.org/standard/44381.html Requires digital evidence to be identified, collected, acquired, and preserved through controlled handling so that it retains evidential value.
- Its failure mode is a record that is bounded on paper but porous in practice — where provenance is thin and items can be swapped, backdated, or quietly added, so the chain of custody is broken and the record no longer proves what it claims to hold.
Verification¶
Does it exist? Not checked yet. This entry carries no identifier to resolve. It was extracted from the citation as written in the article, normalized, and deduplicated against the rest of the registry.
Does it back the claim? Not recorded. The single citation of this work carries no recorded support check.
Support is checked per citation rather than per work — the same source can be cited soundly in one article and wrongly in another. Per-citation recording began recently, so a citation with no recorded check is a gap in the record rather than evidence it went unchecked.
See how references were verified.
Registry ID ref:08eceb746d25 · see in the full table