Interactive Temporal Digital Forensic Event Analysis - IFIP - Lecture Notes in Computer Science Access content directly
Conference Papers Year : 2020

Interactive Temporal Digital Forensic Event Analysis

Abstract

Current digital forensic tools and applications lack the capability to visually present high-level system events and their associated low-level traces in a user interpretable form. This chapter describes the Temporal Analysis Integration Management Application (TAIMA), an interactive graphical user interface that renders graph-based information visualizations for digital forensic event reconstruction. By leveraging correlation and abstraction as core functions, TAIMA reduces the manual, labor-intensive efforts needed to conduct timeline analyses during digital forensic examinations. A pilot usability study conducted to evaluate TAIMA supports the claim that correlation and abstraction of low-level events into high-level system events can enhance digital forensic examinations.
Fichier principal
Vignette du fichier
503209_1_En_3_Chapter.pdf (591.08 Ko) Télécharger le fichier
Origin : Files produced by the author(s)

Dates and versions

hal-03657234 , version 1 (02-05-2022)

Licence

Attribution

Identifiers

Cite

Nikolai Adderley, Gilbert Peterson. Interactive Temporal Digital Forensic Event Analysis. 16th IFIP International Conference on Digital Forensics (DigitalForensics), Jan 2020, New Delhi, India. pp.39-55, ⟨10.1007/978-3-030-56223-6_3⟩. ⟨hal-03657234⟩
32 View
49 Download

Altmetric

Share

Gmail Facebook X LinkedIn More