首页> 外文会议>International Symposium on Digital Forensic and Security >Increasing digital investigator availability through efficient workflow management and automation
【24h】

Increasing digital investigator availability through efficient workflow management and automation

机译:通过有效的工作流管理和自动化来提高数字调查员的可用性

获取原文

摘要

The growth of digital storage capacities and diversity devices has had a significant time impact on digital forensic laboratories in law enforcement. Backlogs have become commonplace and increasingly more time is spent in the acquisition and preparation steps of an investigation as opposed to detailed evidence analysis and reporting. There is generally little room for increasing digital investigation capacity in law enforcement digital forensic units and the allocated budgets for these units are often decreasing. In the context of developing an efficient investigation process, one of the key challenges amounts to how to achieve more with less. This paper proposes a workflow management automation framework for handling common digital forensic tools. The objective is to streamline the digital investigation workflow ??? enabling more efficient use of limited hardware and software. The proposed automation framework reduces the time digital forensic experts waste conducting time-consuming, though necessary, tasks. The evidence processing time is decreased through server-side automation resulting in 24/7 evidence preparation. The proposed framework increases efficiency of use of forensic software and hardware, reduces the infrastructure costs and license fees, and simplifies the preparation steps for the digital investigator. The proposed approach is evaluated in a real-world scenario to evaluate its robustness and highlight its benefits.
机译:数字存储容量和多样性设备的增长对执法中的数字法证实验室产生了重大的时间影响。与详细的证据分析和报告相对,积压工作已变得司空见惯,越来越多的时间花费在调查的获取和准备步骤上。通常,执法数字取证单位的数字调查能力几乎没有增加的余地,为这些单位分配的预算通常在减少。在发展有效的调查过程的背景下,主要挑战之一是如何用更少的钱实现更多的成就。本文提出了一种用于处理常见的数字取证工具的工作流管理自动化框架。目的是简化数字调查工作流程。支持更有效地使用有限的硬件和软件。所提出的自动化框架减少了数字取证专家浪费在进行耗时(尽管有必要)任务上的时间。通过服务器端自动化减少了证据处理时间,从而可以进行24/7的证据准备。拟议的框架提高了取证软件和硬件的使用效率,降低了基础设施成本和许可费用,并简化了数字调查员的准备步骤。在现实世界中对提出的方法进行了评估,以评估其鲁棒性并突出其优势。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号