Database Forensics

From Wikipedia, the free encyclopedia

Database Forensics is a computer science term referring to the forensic study of databases. Computer Forensics as applied to Operating System files has been well investigated and these principles can be applied to the virtual file system of a Relational Database and the RDBMS software that supports it.

Appropriate Database security measures can be implemented to reduce the risk of database misuse whether it be malicious or accidental. In addition, the implementation of decent security controls, processes, and methodologies can support a forensics effort after an incident.