Header menu link for other important links
X
Digital Forensics in Distributed Environment
Published in IGI Global
2018
Pages: 246 - 265
Abstract
This chapter is about an ongoing implementation of a digital forensic framework that could be used with standalone systems as well as in distributed environments, including cloud systems. It is oriented towards combining concepts of cyber forensics and security frameworks in operating systems. The framework consists of kernel mechanisms for data and event monitoring. The system monitoring is done in kernel mode by various kernel modules and forensic model mapping is done in user mode using the data collected by those kernel modules. Further, the authors propose a crime model mapping mechanism that makes use of rule sets that are derived from common cyber/digital crime patterns. The decision-making algorithm can be easily extended from a node in a computing cluster, to a cloud. The authors discuss the challenges to digital forensics in distributed environment and cloud extensions and provide some case studies where the proposed framework is applied.
About the journal
JournalHandbook of Research on Network Forensics and Analysis Techniques Advances in Information Security, Privacy, and Ethics
PublisherIGI Global
ISSN1948-9730
Open AccessNo