Toward Models for Forensic Analysis

  • Authors:
  • Sean Peisert;Matt Bishop;Sidney Karin;Keith Marzullo

  • Affiliations:
  • University of California, San Diego, USA;University of California, Davis, USA;University of California, San Diego, USA;University of California, San Diego, USA

  • Venue:
  • SADFE '07 Proceedings of the Second International Workshop on Systematic Approaches to Digital Forensic Engineering
  • Year:
  • 2007

Quantified Score

Hi-index 0.00

Visualization

Abstract

The existing solutions in the field of computer forensics are largely ad hoc. This paper discusses the need for a rigorous model of forensics and outlines qualities that such a model should possess. It presents an overview of a forensic model and an example of how to apply the model to a real-world, multi-stage attack. We show how using the model can result in forensic analysis requiring a much smaller amount of carefully selected, highly useful data than without the model.