Deriving cse-specific live forensics investigation procedures from FORZA

  • Authors:
  • Ricci Ieong;HC Leung

  • Affiliations:
  • eWalker Consulting Ltd., Hong Kong;eWalker Consulting Ltd., Hong Kong

  • Venue:
  • Proceedings of the 2007 ACM symposium on Applied computing
  • Year:
  • 2007

Quantified Score

Hi-index 0.00

Visualization

Abstract

Performing live forensics investigation becomes a trend in digital forensics. Different vendors and software developer implement their own investigation procedures. By applying FORZA framework -- a digital forensics investigation framework, investigation requirement could be translated and formulated into criteria in applying appropriate forensics investigation requirement. Through this model, only necessary searching would be applied to live investigation process instead of simply passing all investigation process to live investigation unintentionally. In this paper, the FORZA framework that applied to live forensics investigation will be presented and illustrated using the investigation of the first BT illegal movie upload investigation.