Methodology for the Automated Metadata-Based Classification of Incriminating Digital Forensic Artefacts
The ever increasing volume of data in digital forensic investigation is one of the most discussed challenges in the field. Usually, most of the file artefacts on seized devices are not pertinent to the investigation. Manually retrieving suspicious files relevant to the investigation is akin to finding a needle in a haystack. In this paper, a methodology for the automatic prioritisation of suspicious file artefacts (i.e., file artefacts that are pertinent to the investigation) is proposed to reduce the manual analysis effort required. This methodology is designed to work in a human-in-the-loop fashion. In other words, it predicts/recommends that an artefact is likely to be suspicious rather than giving the final analysis result. A supervised machine learning approach is employed, which leverages the recorded results of previously processed cases. The process of features extraction, dataset generation, training and evaluation are presented in this paper. In addition, a toolkit for data extraction from disk images is outlined, which enables this method to be integrated with the conventional investigation process and work in an automated fashion.
Code (0)
등록된 구현이 없습니다.
Tasks
Dataset GenerationGeneral ClassificationSimilar Papers 제목 키워드 기반
User Manual of Automatic Data Curation Tool(ADCT): A bulk data curator software in Library and Information Science
In library and information science, document storage and user-specific document retrieval are the main aspects of digital library services. To preserve the cultural heritage, documents, and literature, we need a common p…
DescriptiveRetrievalAutomated Artefact Relevancy Determination from Artefact Metadata and Associated Timeline Events
Case-hindering, multi-year digital forensic evidence backlogs have become commonplace in law enforcement agencies throughout the world. This is due to an ever-growing number of cases requiring digital forensic investigat…
Using Supervised Learning to Classify Metadata of Research Data by Discipline of Research
Automated classification of metadata of research data by their discipline(s) of research can be used in scientometric research, by repository service providers, and in the context of research data aggregation services. O…
ClassificationGeneral ClassificationMulti-Label ClassificationMUlTI-LABEL-ClASSIFICATIONKnowledge Graphs for Digitized Manuscripts in Jagiellonian Digital Library Application
Digitizing cultural heritage collections has become crucial for preservation of historical artifacts and enhancing their availability to the wider public. Galleries, libraries, archives and museums (GLAM institutions) ar…
Knowledge GraphsThanosNet: A Novel Trash Classification Method Using Metadata
Recent progress in deep neural networks has spurred significant development of image-based trash classification literature. These methods predominately use transfer learning to achieve state-of-the-art results. In this c…
ClassificationImage ClassificationTransfer Learning