期刊文献+

基于证据库的数字证据转换模型 被引量:1

Evidence conversion model based on evidence database
下载PDF
导出
摘要 针对目前多种证据格式兼容性差、证据转换效率低、缺乏对证据文件转换过程进行科学判定及理论说明等不足,提出证据库转换模型。该模型对现有转换方法进行分析,利用证据文件是在RAW映像文件的基础上增加了元数据及专属格式信息的重要特征,引入多层签名以确保原始信息及证据文件的准确性,不改变证据文件的相关特征,完成证据格式高效转换。同时针对现有新型证据格式(AFF)转换效率慢问题,改进现有转换算法,完成与RAW文件格式的快速转换。实验结果表明,该模型能够重建证据转换流程,能够优化算法结构,提高证据文件格式转换速度。 For the compatible problem of the existing multiple forensic formats, the efficiency of evidence conversion was low and the conversion couldn' t make scientific judgment and theoretical description of the process of conversion, this paper improved a model of evidence format conversion and analyzed the existing method. It found that digital evidence were based on raw image and adding the metadata and the feature of special evidence information to it. Using multi-signature to guarantee the accuracy of original information, it kept the important characteristics of evidence and accomplished the conversion efficiently. This paper also improved the conversion algorithm of advanced forensic format (AFF) to solve the problem of low efficiency, and accomplished the high-efficient conversion with raw format. The experimental results show that the model can reconstruct the process of evidence conversion, optimize the construction of algorithm and improve the speed of conversion algorithm.
出处 《计算机应用研究》 CSCD 北大核心 2015年第7期2140-2143,共4页 Application Research of Computers
基金 国家自然科学基金资助项目(60903220) 郑州市科技攻关资助项目
关键词 计算机取证 证据转换模型 先进取证格式 转换算法 computer forensics evidence conversion model advanced forensic format conversion algorithm
  • 相关文献

参考文献14

  • 1Garfinkel S L. Digi-tal forensics research:the next 10 years[J]. Dig- ital Investigation,2010,7 (supp) :64-73.
  • 2Ayers D. A second generation computer forensic analysis system[ J]. Digital Investigation,2009,6 ( supp ) : 34 - 42.
  • 3Patel P C. Aggregation of digital forensics evidences[J] International Journal of Computer Trends & Technology,2013,4(4) :187.
  • 4Kessler G. Book review: challenges to digital forensic evidence [ J ]. Joumal of Digital Forensics, Security and Law,2014,3( 1 ) :57- 60.
  • 5Carbone F. Computer forensics with FTK [ M ]. [ S. 1. ] : Packt Pub- lishing Ltd, 2014.
  • 6Office of Law Enforcement Standards ( OLES), United States of A- merica. Test results for digital data acquisition tool: FFK imager CLI 2.9. 0_Debian[ K]. 2013.
  • 7National Institute of Standards and Technology ( NIST), United States of America. Test resuhs for digital data acquisition tool: ASR data SMART version 2010 - 11 - 03 [ K ]. 2012.
  • 8Seanlon M, Kechadi T. Digital evidence bag selection for P2P net- work investigation [ M ]//Future Information Technology. Berlin: Springer, 2014 : 307 - 314.
  • 9Kizza J M. Computer and network forensics[ M]//Guide to Computer Network Security. London: Springer,2013:297 - 321.
  • 10Jonathan G. Detecting data theft using stochastic forensics[J]. Digital I nvestigation, 2011,8: 71 - 77.

同被引文献3

引证文献1

二级引证文献4

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部