2013
DOI: 10.1016/j.diin.2013.03.001
|View full text |Cite
|
Sign up to set email alerts
|

Triage template pipelines in digital forensic investigations

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
7
0

Year Published

2014
2014
2019
2019

Publication Types

Select...
4
2
1

Relationship

0
7

Authors

Journals

citations
Cited by 18 publications
(8 citation statements)
references
References 6 publications
0
7
0
Order By: Relevance
“…Furthermore, by repurposing the standard AFF format to support partial images, sifting collectors produce portable images that are readily analyzable by existing tools, without modification. Triage has become a hotly debated topic in the digital forensics community (Roussev et al, 2013;Overill et al, 2013;Marturana and Tacconi, 2013;Bogen et al, 2013), with the Journal of Digital Investigation devoting an entire issue to it (Digital Investigation, 2013). While certainly valuable, triage has several shortcomings as a replacement for acquisition, such as missing important evidence and potentially damaging relevant evidence, particularly in view of how triage is currently practiced (Shaw and Browne, 2013).…”
Section: Related Workmentioning
confidence: 98%
“…Furthermore, by repurposing the standard AFF format to support partial images, sifting collectors produce portable images that are readily analyzable by existing tools, without modification. Triage has become a hotly debated topic in the digital forensics community (Roussev et al, 2013;Overill et al, 2013;Marturana and Tacconi, 2013;Bogen et al, 2013), with the Journal of Digital Investigation devoting an entire issue to it (Digital Investigation, 2013). While certainly valuable, triage has several shortcomings as a replacement for acquisition, such as missing important evidence and potentially damaging relevant evidence, particularly in view of how triage is currently practiced (Shaw and Browne, 2013).…”
Section: Related Workmentioning
confidence: 98%
“…Overill et al [20] propose an attractive idea to introduce triage template pipelines into the investigative process for the most popular types of digital crimes, enabling digital evidence to be examined according to a number of prioritised criteria. Each specific digital crime has its own template of prioritised devices and the data based on the cost-effectiveness criteria of front-loading probative value and back-loading resource utilisation.…”
Section: Models and Methods Of Live Triagementioning
confidence: 99%
“…The introduction of triage template pipelines into the investigative process for the most popular types of digital crimes, presented by Overill et al [20]. However, the authors do not enumerate these types of crimes and provide only the DDoS and P2P template diagrams without the discussion of the details 4.…”
Section: Lessons Learned From the Reviewmentioning
confidence: 99%
“…Even the process of triaging, i.e, the initial assessment process where cases are filtered and prioritised by digital forensic experts, is coming under increasing pressure. For example, London Metropolitan Police services receive over 38,000 digital devices a year for digital forensic examination, a situation described as "resource overload" [3].…”
Section: Background and Contextmentioning
confidence: 99%
“…However, evidence collection and handling methods for social media crimes lack technical sophistication. For example, Facebook gives the following advice for evidence collection in case of cyber bullying on its platform 3 .…”
Section: Background and Contextmentioning
confidence: 99%