首页    期刊浏览 2024年11月27日 星期三
登录注册

文章基本信息

  • 标题:The Enhanced Forensic Examination and Analysis for Mobile Cloud Platform by Applying Data Mining Methods
  • 本地全文:下载
  • 作者:Ibrahim Ali Alnajjar ; Massudi Mahmuddin
  • 期刊名称:Webology
  • 印刷版ISSN:1735-188X
  • 出版年度:2021
  • 卷号:18
  • 期号:SI01
  • 页码:47-74
  • DOI:10.14704/WEB/V18SI01/WEB18006
  • 出版社:University of Tehran
  • 摘要:Investigating the mobile cloud environment is a challenging task due to the characteristics of voluminous data, dispersion of data, virtualization, and diverse data. Recent research works focus on applying the latest forensic methodologies to the mobile cloud investigation. This paper proposes an enhanced forensic examination and analysis model for the mobile cloud environment that incorporates timeline analysis, hash filtering, data carving, and data transformation sub-phases to improve the performance of the cloud evidence identification and overall forensic decision-making. It analyzes the timeline of events and filters the case-specific files based on the hash values and metadata using the data mining methods. The proposed forensic model performs the in-place carving on the filtered data to guide the investigation and integrates the heterogeneous file types and distributed pieces of evidence with the assistance of the data mining. Finally, the proposed approach employs LSTM based model that significantly improves the forensic decision making.
  • 其他摘要:Investigating the mobile cloud environment is a challenging task due to the characteristics of voluminous data, dispersion of data, virtualization, and diverse data. Recent research works focus on applying the latest forensic methodologies to the mobile cloud investigation. This paper proposes an enhanced forensic examination and analysis model for the mobile cloud environment that incorporates timeline analysis, hash filtering, data carving, and data transformation sub-phases to improve the performance of the cloud evidence identification and overall forensic decision-making. It analyzes the timeline of events and filters the case-specific files based on the hash values and metadata using the data mining methods. The proposed forensic model performs the in-place carving on the filtered data to guide the investigation and integrates the heterogeneous file types and distributed pieces of evidence with the assistance of the data mining. Finally, the proposed approach employs LSTM based model that significantly improves the forensic decision making.
国家哲学社会科学文献中心版权所有