| Dan Farmer and Wietse Venema, \Forensic computer analysis: an introduction" http://xxx.ddj.com/documents/s=881/ddj0009f/0009f.htm Last visited 5 December 2002 |
....any tracks, it might make you suspicious: Did someone brush away all traces of activity As we all know from programming experience, it is signi cantly easier to nd a problem or bug if we know something is wrong than if you re simply presented with a program. Dan Farmer and Wietse Venema [15] 7.1 Results The main result of this thesis is that despite the challenges faced by an individual attempting to determine what sequence of events led to an security violation, it is possible to automate the analysis of digital evidence to identify relevant data left by an attacker who attempts ....
Dan Farmer and Wietse Venema. Forensic computer analysis: An introduction, September 2000.
....of answers to these questions is faced with a daunting task. First, she must scour the free space of the storage system in search of disk blocks from deleted data and log files that have not yet been overwritten; simplifying 14 this task has been the focus of several forensic tool developers [9, 14, 20]. Second, and far more difficult, she must then piece together this incomplete information and form hypotheses about the details of the intrusion; this is, at best, a black art. Self securing storage has the ability to brighten this dismal picture. It makes available a large amount of information ....
Dan Farmer and Wietse Venema. Forensic computer analysis: an introduction. Dr. Dobb's Jourmd, 25(9):7(75, September 2000.
No context found.
Dan Farmer and Wietse Venema, \Forensic computer analysis: an introduction" http://xxx.ddj.com/documents/s=881/ddj0009f/0009f.htm Last visited 5 December 2002
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC