3.9 Article

A practical and robust approach to coping with large volumes of data submitted for digital forensic examination

期刊

DIGITAL INVESTIGATION
卷 10, 期 2, 页码 116-128

出版社

ELSEVIER SCI LTD
DOI: 10.1016/j.diin.2013.04.003

关键词

Digital forensics; Triage; Linux; Open source; Enhanced previewing

向作者/读者索取更多资源

Digital forensic triage is poorly defined and poorly understood. The lack of clarity surrounding the process of triage has given rise to legitimate concerns. By trying to define what triage actually is, one can properly engage with the concerns surrounding the process. This paper argues that digital forensic triage has been conducted on an informal basis for a number of years in digital forensic laboratories, even where there are legitimate objections to the process. Nevertheless, there are clear risks associated with the process of technical triage, as currently practised. The author has developed and deployed a technical digital forensic previewing process that negates many of the current concerns regarding the triage process and that can be deployed in any digital forensic laboratory at very little cost. This paper gives a high-level overview of how the system works and how it can be deployed in the digital forensic laboratory. Crown Copyright (C) 2013 Published by Elsevier Ltd. All rights reserved.

作者

我是这篇论文的作者
点击您的名字以认领此论文并将其添加到您的个人资料中。

评论

主要评分

3.9
评分不足

次要评分

新颖性
-
重要性
-
科学严谨性
-
评价这篇论文

推荐

暂无数据
暂无数据