An Analysis of the Green Dam Youth Escort Software - Advances in Digital Forensics VI
Conference Papers Year : 2010

An Analysis of the Green Dam Youth Escort Software

Abstract

According to official Chinese media sources, the Green Dam Youth Escort (GDYE) software is intended to protect young citizens from viewing unhealthy information on the Internet. However, critics maintain that GDYE has serious security vulnerabilities that allow hackers to take control of computers installed with GDYE. Critics also claim that the software is designed to collect user data and keystrokes for transmission to remote servers for unknown purposes. GDYE was originally mandated to be pre-installed on every computer sold in the People's Republic of China. However, the plan was suddenly shelved in the face of intense international media attention. This paper evaluates the GDYE software's advertised functions and additional non-advertised capabilities. As the software may have spyware and malware functionality, the evaluation monitored the software behavior in a specialized controlled environment. The analysis was performed from a forensics perspective to collect digital evidence and traces in order to prove or disprove that GDYE captures and disseminates private information.
Fichier principal
Vignette du fichier
LiCCL10.pdf (1.03 Mo) Télécharger le fichier
Origin Files produced by the author(s)
Loading...

Dates and versions

hal-01060609 , version 1 (28-11-2017)

Licence

Identifiers

Cite

Frankie Li, Hilton Chan, Kam-Pui Chow, Pierre Lai. An Analysis of the Green Dam Youth Escort Software. 6th IFIP WG 11.9 International Conference on Digital Forensics (DF), Jan 2010, Hong Kong, China. pp.49-62, ⟨10.1007/978-3-642-15506-2_4⟩. ⟨hal-01060609⟩
188 View
270 Download

Altmetric

Share

More