
management. However, AFF still lacks widespread
legal recognition, limiting its effectiveness in real-
world forensic applications.
The challenges of digital evidence handling
extend beyond security concerns to include
transparency and legal compliance. Sadiku et al.
provide an overview of digital CoC elements,
focusing on data integrity, institutional involvement,
and verification techniques such as digital signatures
and timestamps. They highlight vulnerabilities in
traditional CoC systems, including unauthorized
access and inadequate mechanisms for long-term data
provenance tracking. These limitations strengthen the
case for adopting blockchain technology, which
offers immutable records, decentralized verification,
and automated tracking mechanisms through smart
contracts.
Several studies explore blockchain’s potential in
forensic CoC management. A systematic literature
review is conducted for identifying key advantages
such as immutability, transparency, and traceability.
They note that blockchain has been widely discussed
for digital forensics but remains underutilized for
managing physical evidence. Despite its benefits,
blockchain introduces challenges such as high
computational costs, scalability issues, and
difficulties integrating with existing forensic systems.
Another study, assumed to focus on blockchain-based
digital CoC frameworks, likely presents solutions that
leverage blockchain’s cryptographic security, access
control mechanisms, and timestamping to enhance
evidence authenticity. However, concerns such as
regulatory uncertainties and privacy issues remain
obstacles to widespread adoption.
While blockchain enhances forensic evidence
security, its implementation is not without challenges.
Scalability remains a major concern, as blockchain
networks require significant computational resources,
which can lead to high operational costs.
Additionally, forensic institutions rely on legacy
systems that may not be easily compatible with
blockchain technology. The lack of standardized legal
frameworks for blockchain-based evidence further
complicates its admissibility in court. Public
blockchains, while transparent, raise privacy
concerns, whereas permissioned blockchains
introduce centralization risks that contradict the core
principles of decentralized security.
The Advanced Forensic Format Library
(AFFLIB) enhances digital forensic investigations by
incorporating cryptographic security, integrity
mechanisms, and chain-of-custody provisions. By
leveraging digital signatures and encryption, AFFLIB
ensures transparent access to secured evidence files
while maintaining their authenticity. Compared to
traditional forensic tools, it provides significant
advantages, such as simplified implementation,
robust encryption beyond simple password
protection, and the ability to sign raw files without
modifying original data. Additionally, it allows for in-
place encryption of previously unencrypted evidence
files, increasing flexibility in forensic procedures.
However, AFFLIB has certain drawbacks, including
the lack of encryption for segment names and 32-bit
arguments, which, while not directly holding
evidentiary data, could pose minor security risks.
Moreover, each AFF file requires a unique encryption
key, making key management cumbersome, as the
only way to change the key is by copying the data to
a newly encrypted file. Another critical limitation is
that encryption keys are cached in memory, making
them susceptible to theft by malicious software unless
additional security measures, such as cryptographic
tokens or trusted operating systems, are employed.
These challenges highlight the need for more secure
and efficient cryptographic mechanisms, reinforcing
the potential of blockchain technology to address
such vulnerabilities in the chain of custody for digital
evidence.
It also reviews methods for digitally signing
evidence to ensure a legally admissible and secure
CoC. The study emphasizes integrating real-world
interactions, including GPS for location tracking,
timestamps for precise documentation, biometrics for
authentication, and hash functions for digital
fingerprints. A proper combination of these methods
can create a robust CoC, ensuring the integrity and
admissibility of evidence in court. Despite individual
advantages and disadvantages, these techniques,
when carefully implemented alongside cryptographic
algorithms, can provide a secure and comprehensive
framework for digital evidence encryption and
decryption.
Addressing these challenges requires continued
research and development. Future studies should
focus on designing scalable blockchain frameworks
tailored for forensic investigations. Hybrid
blockchain models, combining public and private
features, may help balance transparency and security.
Establishing legal guidelines and standardizing
blockchain forensic protocols will be essential to
gaining judicial acceptance. Additionally, integrating
blockchain with existing forensic tools without
disrupting workflows will be crucial for practical
adoption. Privacy-enhancing techniques such as zero-
knowledge proofs could further strengthen
blockchain’s role in securing forensic evidence.
Blockchain Based Framework for Securing Digital Evidence
489