{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,12,29]],"date-time":"2025-12-29T18:48:27Z","timestamp":1767034107772,"version":"build-2065373602"},"reference-count":22,"publisher":"MDPI AG","issue":"2","license":[{"start":{"date-parts":[[2018,2,7]],"date-time":"2018-02-07T00:00:00Z","timestamp":1517961600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"name":"IoTest","award":["TIN2015-72634-EXP\/AEI"],"award-info":[{"award-number":["TIN2015-72634-EXP\/AEI"]}]},{"name":"SMOG","award":["TIN2016-79095-C2-1-R"],"award-info":[{"award-number":["TIN2016-79095-C2-1-R"]}]},{"name":"PRECISE","award":["TIN2014-54427-JIN"],"award-info":[{"award-number":["TIN2014-54427-JIN"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Sensors"],"abstract":"<jats:p>IoT-Forensics is a novel paradigm for the acquisition of electronic evidence whose operation is conditioned by the peculiarities of the Internet of Things (IoT) context. As a branch of computer forensics, this discipline respects the most basic forensic principles of preservation, traceability, documentation, and authorization. The digital witness approach also promotes such principles in the context of the IoT while allowing personal devices to cooperate in digital investigations by voluntarily providing electronic evidence to the authorities. However, this solution is highly dependent on the willingness of citizens to collaborate and they may be reluctant to do so if the sensitive information within their personal devices is not sufficiently protected when shared with the investigators. In this paper, we provide the digital witness approach with a methodology that enables citizens to share their data with some privacy guarantees. We apply the PRoFIT methodology, originally defined for IoT-Forensics environments, to the digital witness approach in order to unleash its full potential. Finally, we show the feasibility of a PRoFIT-compliant digital witness with two use cases.<\/jats:p>","DOI":"10.3390\/s18020492","type":"journal-article","created":{"date-parts":[[2018,2,7]],"date-time":"2018-02-07T12:20:29Z","timestamp":1518006029000},"page":"492","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":74,"title":["IoT-Forensics Meets Privacy: Towards Cooperative Digital Investigations"],"prefix":"10.3390","volume":"18","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-2826-9119","authenticated-orcid":false,"given":"Ana","family":"Nieto","sequence":"first","affiliation":[{"name":"Network, Information and Computer Security (NICS) Lab, University of Malaga, 29071 Malaga, Spain"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6251-4897","authenticated-orcid":false,"given":"Ruben","family":"Rios","sequence":"additional","affiliation":[{"name":"Network, Information and Computer Security (NICS) Lab, University of Malaga, 29071 Malaga, Spain"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Javier","family":"Lopez","sequence":"additional","affiliation":[{"name":"Network, Information and Computer Security (NICS) Lab, University of Malaga, 29071 Malaga, Spain"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"1968","published-online":{"date-parts":[[2018,2,7]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","unstructured":"Oriwoh, E., and Sant, P. (2013, January 18\u201321). The forensics edge management system: A concept and design. Proceedings of the 2013 IEEE 10th International Conference on Ubiquitous Intelligence and Computing, 10th International Conference on Autonomic and Trusted Computing (UIC\/ATC), Vietri sul Mere, Italy.","DOI":"10.1109\/UIC-ATC.2013.71"},{"key":"ref_2","doi-asserted-by":"crossref","first-page":"34","DOI":"10.1109\/MNET.2016.1600087NM","article-title":"Digital Witness: Safeguarding Digital Evidence by Using Secure Architectures in Personal Devices","volume":"30","author":"Nieto","year":"2016","journal-title":"IEEE Netw."},{"key":"ref_3","doi-asserted-by":"crossref","unstructured":"Nieto, A., Rios, R., and Lopez, J. (2017, January 1\u20134). Digital Witness and Privacy in IoT: Anonymous Witnessing Approach. Proceedings of the 2017 IEEE Conference on Trustcom\/BigDataSE\/ICESS, Sydney, NSW, Australia.","DOI":"10.1109\/Trustcom\/BigDataSE\/ICESS.2017.295"},{"key":"ref_4","doi-asserted-by":"crossref","unstructured":"Nieto, A., Rios, R., and Lopez, J. (2017, January 1\u20134). A Methodology for Privacy-Aware IoT-Forensics. Proceedings of the 2017 IEEE Conference on Trustcom\/BigDataSE\/ICESS, Sydney, NSW, Australia.","DOI":"10.1109\/Trustcom\/BigDataSE\/ICESS.2017.293"},{"key":"ref_5","unstructured":"ISO (2011). Information Technology\u2014Security Techniques\u2014Privacy Framework, International Organization for Standardization (ISO). ISO\/IEC 29100:2011 Standard."},{"key":"ref_6","unstructured":"ISO (2015). Information Technology\u2014Security Techniques\u2014Guidelines for the Analysis and Interpretation of Digital Evidence, International Organization for Standardization (ISO). ISO\/IEC 27042:2015 Standard."},{"key":"ref_7","unstructured":"Petrocelli, T. (2005). Data Protection and Information Lifecycle Management, Prentice Hall PTR."},{"key":"ref_8","doi-asserted-by":"crossref","unstructured":"Brickell, E., Camenisch, J., and Chen, L. (2004, January 25\u201329). Direct Anonymous Attestation. Proceedings of the 11th ACM Conference on Computer and Communications Security, Washington, DC, USA.","DOI":"10.1145\/1030083.1030103"},{"key":"ref_9","first-page":"268","article-title":"One-Way Signature Chaining: A new paradigm for group cryptosystems","volume":"2","author":"Saxena","year":"2008","journal-title":"Int. J. Inf. Comput. Secur."},{"key":"ref_10","doi-asserted-by":"crossref","unstructured":"Moore, C., O\u2019Neill, M., O\u2019Sullivan, E., Dor\u00f6z, Y., and Sunar, B. (2014, January 1\u20135). Practical homomorphic encryption: A survey. Proceedings of the 2014 IEEE International Symposium on Circuits and Systems (ISCAS), Melbourne, VIC, Australia.","DOI":"10.1109\/ISCAS.2014.6865753"},{"key":"ref_11","doi-asserted-by":"crossref","first-page":"4585","DOI":"10.1109\/TVT.2014.2313180","article-title":"AASR: Authenticated Anonymous Secure Routing for MANETs in Adversarial Environments","volume":"63","author":"Liu","year":"2014","journal-title":"IEEE Trans. Veh. Technol."},{"key":"ref_12","doi-asserted-by":"crossref","unstructured":"Kosba, A., Miller, A., Shi, E., Wen, Z., and Papamanthou, C. (2016, January 22\u201326). Hawk: The blockchain model of cryptography and privacy-preserving smart contracts. Proceedings of the 2016 IEEE Symposium on Security and Privacy (SP), San Jose, CA, USA.","DOI":"10.1109\/SP.2016.55"},{"key":"ref_13","doi-asserted-by":"crossref","unstructured":"Karvelas, N.P., and Kiayias, A. (2014, January 3\u20135). Efficient Proofs of Secure Erasure. Proceedings of the International Conference on Security and Cryptography for Networks (SCN 2014), Amalfi, Italy.","DOI":"10.1007\/978-3-319-10879-7_30"},{"key":"ref_14","doi-asserted-by":"crossref","first-page":"925","DOI":"10.1109\/SURV.2013.070813.00214","article-title":"Smartphone malware and its propagation modeling: A survey","volume":"16","author":"Peng","year":"2014","journal-title":"IEEE Commun. Surv. Tutor."},{"key":"ref_15","doi-asserted-by":"crossref","first-page":"78","DOI":"10.1145\/1941487.1941508","article-title":"Privacy-preserving network forensics","volume":"54","author":"Afanasyev","year":"2011","journal-title":"Commun. ACM"},{"key":"ref_16","unstructured":"Stirparo, P., and Kounelis, I. (2012, January 10\u201312). The mobileak project: Forensics methodology for mobile application privacy assessment. Proceedings of the 2012 International Conference for Internet Technology And Secured Transactions, London, UK."},{"key":"ref_17","doi-asserted-by":"crossref","unstructured":"Daniel, L.E. (2012). Digital Forensics for Legal Professionals: Understanding Digital Evidence From the Warrant to the Courtroom, Elsevier.","DOI":"10.1016\/B978-1-59749-643-8.00003-1"},{"key":"ref_18","doi-asserted-by":"crossref","first-page":"229","DOI":"10.1016\/j.csi.2007.10.008","article-title":"Privacy and forensics investigation process: The ERPINA protocol","volume":"30","author":"Antoniou","year":"2008","journal-title":"Comput. Stand. Interfaces"},{"key":"ref_19","doi-asserted-by":"crossref","unstructured":"Law, F.Y., Chan, P.P., Yiu, S.M., Chow, K.P., Kwan, M.Y., Hayson, K., and Lai, P.K. (2011, January 26). Protecting digital data privacy in computer forensic examination. Proceedings of the 2011 IEEE Sixth International Workshop on Systematic Approaches to Digital Forensic Engineering (SADFE), Oakland, CA, USA.","DOI":"10.1109\/SADFE.2011.15"},{"key":"ref_20","doi-asserted-by":"crossref","first-page":"51","DOI":"10.1016\/j.cose.2013.03.007","article-title":"Smartphone sensor data as digital evidence","volume":"38","author":"Mylonas","year":"2013","journal-title":"Comput. Secur."},{"key":"ref_21","doi-asserted-by":"crossref","first-page":"S12","DOI":"10.1016\/j.diin.2013.06.002","article-title":"Android forensics: Automated data collection and reporting from a mobile device","volume":"10","author":"Grover","year":"2013","journal-title":"Digit. Investig."},{"key":"ref_22","doi-asserted-by":"crossref","first-page":"985","DOI":"10.1016\/j.sysarc.2013.07.009","article-title":"WEVAN\u2014A mechanism for evidence creation and verification in VANETs","volume":"59","author":"Blasco","year":"2013","journal-title":"J. Syst. Archit."}],"container-title":["Sensors"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/1424-8220\/18\/2\/492\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,11]],"date-time":"2025-10-11T14:54:05Z","timestamp":1760194445000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/1424-8220\/18\/2\/492"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,2,7]]},"references-count":22,"journal-issue":{"issue":"2","published-online":{"date-parts":[[2018,2]]}},"alternative-id":["s18020492"],"URL":"https:\/\/doi.org\/10.3390\/s18020492","relation":{},"ISSN":["1424-8220"],"issn-type":[{"type":"electronic","value":"1424-8220"}],"subject":[],"published":{"date-parts":[[2018,2,7]]}}}