Proceedings of the 1st international conference on Forensic applications and techniques in telecommunications, information, and multimedia and workshop
Digital Investigation: The International Journal of Digital Forensics & Incident Response
Automated forensic fingerprint analysis: a novel generic process model and container format
BioID'11 Proceedings of the COST 2101 European conference on Biometrics and ID management
Hash based disk imaging using AFF4
Digital Investigation: The International Journal of Digital Forensics & Incident Response
Distributed forensics and incident response in the enterprise
Digital Investigation: The International Journal of Digital Forensics & Incident Response
Hi-index | 0.00 |
Forensic analysis requires the acquisition and management of many different types of evidence, including individual disk drives, RAID sets, network packets, memory images, and extracted files. Often the same evidence is reviewed by several different tools or examiners in different locations. We propose a backwards-compatible redesign of the Advanced Forensic Format-an open, extensible file format for storing and sharing of evidence, arbitrary case related information and analysis results among different tools. The new specification, termed AFF4, is designed to be simple to implement, built upon the well supported ZIP file format specification. Furthermore, the AFF4 implementation has downward comparability with existing AFF files.