International journal of electronic security and digital forensics: IJESDF2025,Vol.17Issue(5) :563-581.DOI:10.1504/IJESDF.2025.148210

DarkExtract: tool for extracting and analysing Tor Browser host-based activities

Mandela N. Mahmoud A.A.S. Mistry N.R. Agrawal A.K.
International journal of electronic security and digital forensics: IJESDF2025,Vol.17Issue(5) :563-581.DOI:10.1504/IJESDF.2025.148210

DarkExtract: tool for extracting and analysing Tor Browser host-based activities

Mandela N. 1Mahmoud A.A.S. 1Mistry N.R. 1Agrawal A.K.2
扫码查看

作者信息

  • 1. School of Digital Forensics and Cyber Security National Forensic Sciences University
  • 2. Unitedworld Institute of Technology (UIT) Karnavati University
  • 折叠

Abstract

Copyright © 2025 Inderscience Enterprises Ltd.The increasing usage of Tor Browser, a popular tool for anonymous web browsing, has presented unique challenges for forensic investigators in analysing digital evidence. This research paper introduces Dark_Extract, an open-source tool designed to simplify the identification and analysis of host-based artefacts left by Tor Browser. The purpose of this study is to address the challenges associated with forensic analysis of Tor Browser traces by providing a user-friendly and efficient solution. The methodology employed in developing Dark_Extract involved the analysis of Tor Browser’s architecture and the identification of key host-based artefacts relevant to forensic investigation. The tool was then developed to automate the extraction and analysis of these artefacts, eliminating the need for extensive knowledge of Tor Browser’s intricate structure. The major findings of this study demonstrate the effectiveness of Dark_Extract in simplifying the forensic analysis of Tor Browser traces. The tool successfully extracts and presents crucial host-based artifacts such as downloads, cookies, browsing history, and bookmarks, which can be of significant importance in forensic investigations. The results obtained through the use of Dark_Extract indicate its accuracy and efficiency in identifying and organising these artefacts.

Key words

anonymous web browsing/dark net/dark web/digital evidence/forensic data extraction/forensic investigation/host-based artefacts/Tor Browser

引用本文复制引用

出版年

2025
International journal of electronic security and digital forensics: IJESDF

International journal of electronic security and digital forensics: IJESDF

ISSN:1751-911X
参考文献量19
段落导航相关论文