کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
456451 695718 2011 10 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
CAT Detect (Computer Activity Timeline Detection): A tool for detecting inconsistency in computer activity timelines
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر شبکه های کامپیوتری و ارتباطات
پیش نمایش صفحه اول مقاله
CAT Detect (Computer Activity Timeline Detection): A tool for detecting inconsistency in computer activity timelines
چکیده انگلیسی

The construction of timelines of computer activity is a part of many digital investigations. These timelines of events are composed of traces of historical activity drawn from system logs and potentially from evidence of events found in the computer file system. A potential problem with the use of such information is that some of it may be inconsistent and contradictory thus compromising its value. This work introduces a software tool (CAT Detect) for the detection of inconsistency within timelines of computer activity. We examine the impact of deliberate tampering through experiments conducted with our prototype software tool. Based on the results of these experiments, we discuss techniques which can be employed to deal with such temporal inconsistencies.

ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Digital Investigation - Volume 8, Supplement, August 2011, Pages S52–S61
نویسندگان
, , , ,