Abstract
Types of logs, such as cache, history, cookie and downloads list, are created by a web browser. Digital forensic investigators analyze these logs and obtain useful information related to cases. In fact, most of the existing tools simply parse log files. As a result, investigators have to classify and analyze log data at firsthand in the process of digital forensic investigation. In particular, in the case of massive data, they should spend enormous time analyzing the data. Therefore, in this paper, with parsed information on cache, history, cookie and download list, we propose data classification and timeline visualization method to improve analysis in efficient way for reducing investigation time and work. Also, ”WEFA”, a developed tool based on the research work, is to be introduced.
Original language | English |
---|---|
Title of host publication | Information Security Applications - 13th International Workshop, WISA 2012, Revised Selected Papers |
Editors | Dong Hoon Lee, Moti Yung |
Publisher | Springer Verlag |
Pages | 192-207 |
Number of pages | 16 |
ISBN (Print) | 9783642354151 |
DOIs | |
Publication status | Published - 2012 |
Event | 13th International Workshop on Information Security Applications, WISA 2012 - Jeju Island, Korea, Republic of Duration: 2012 Aug 16 → 2012 Aug 18 |
Publication series
Name | Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) |
---|---|
Volume | 7690 LNCS |
ISSN (Print) | 0302-9743 |
ISSN (Electronic) | 1611-3349 |
Other
Other | 13th International Workshop on Information Security Applications, WISA 2012 |
---|---|
Country/Territory | Korea, Republic of |
City | Jeju Island |
Period | 12/8/16 → 12/8/18 |
Bibliographical note
Funding Information:★ This work was supported by the IT R&D program of MKE/KEIT 10035157, Devel-opment of Digital Forensic Technologies for Real-Time Analysis. ★★ Corresponding author.
Publisher Copyright:
© Springer-Verlag Berlin Heidelberg 2012.
Keywords
- Data classification
- Timeline visualization
- Web browser log
ASJC Scopus subject areas
- Theoretical Computer Science
- Computer Science(all)