A formal logic-based language and an automated verification tool for computer forensic investigation

  • Authors:
  • Slim REKHIS;Noureddine BOUDRIGA

  • Affiliations:
  • University of Carthage, Tunisia;University of Carthage, Tunisia

  • Venue:
  • Proceedings of the 2005 ACM symposium on Applied computing
  • Year:
  • 2005

Quantified Score

Hi-index 0.00

Visualization

Abstract

In this paper, a formal logic-based language, called S-TLA+, is proposed for computer forensic investigation. It allows an unambiguous description of evidences, a modeling of the forensic expert knowledge in the form of hacking scenarios fragments, and a reasoning capability with uncertainty by filling in potential lack of data with hypotheses. The proposal is complemented by an automated formal verification tool, called S-TLC which helps exploring additional evidences and checks whether there are plausible hacking scenarios that meet the available evidences.