Forensic Evidence Identification and Modeling for Attacks against a Simulated Online Business Information System
Clicks: 375
ID: 72769
2012
Article Quality & Performance Metrics
Overall Quality
Not rated
Combines reader engagement with the AI quality analysis. This
article has not been analysed, so there is no overall score —
reader engagement is measured and shown alongside.
Reader Engagement
Steady Performance
75.8
/100
375 views
266 readers
Trending
AI Quality Assessment
Not analyzed
Readership in this journal
SteadyRanked #2 of 3 articles by views in journal of digital forensics, security and law
Most read
Least read
Bar heights use a square-root scale.
Mint this article as an NFT
Not yet mintedCreate a permanent, verifiable on-chain record of this article on the Scimatic Network. The NFT is held in your Journament account, and you can withdraw it to your own wallet at any time.
5
SUSD
one-off · no wallet required
Abstract
Forensic readiness can support future forensics investigation or auditing on external/internal attacks, internal sabotage and espionage, and business frauds. To establish forensics readiness, it is essential for an organization to identify what evidences are relevant and where they can be found, to determine whether they are logged in a forensic sound way and whether all the needed evidences are available to reconstruct the events successfully. Â Our goal of this research is to ensure evidence availability. First, both external and internal attacks are molded as augmented attack trees/graphs based on the system vulnerabilities. Second, modeled attacks are conducted against a honeynet simulating an online business information system, and each honeypot's hard drive is forensic sound imaged for each individual attack. Third, an evidence tree/graph will be built after forensics examination on the disk images for each attack. The evidence trees/graphs are expected to be used for automatic crime scene reconstruction and automatic attack/fraud detection in the future.
| Reference Key |
tu2012forensicjournal
Use this key to autocite in the manuscript while using
SciMatic Manuscript Manager or Thesis Manager
|
|---|---|
| Authors | Tu, Manghui; |
| Journal | journal of digital forensics, security and law |
| Year | 2012 |
| DOI |
DOI not found
|
| URL | |
| Keywords |
social sciences (general)
social sciences
social pathology. social and public welfare. criminology
law
political science
criminal law and procedure
special aspects of education
political science (general)
history (general)
law in general. comparative and uniform law. jurisprudence
demography. population. vital events
modern history, 1453-
international relations
|
Citations
No citations found. To add a citation, contact the admin at info@scimatic.org
Comments
No comments yet. Be the first to comment on this article.