Digital forensic investigation is a time-consuming process, particularly when it comes to manually correlating information between different custodians. Existing methods have been limited in their ability to provide a complete overview of relevant activities and events. In response, this research project has developed a new framework that uses metadata and document entity correlation to identify correlations between custodians. The resulting insights are novel, providing a unique overview of custodian data and a clearer understanding of document content and revisions. Using this framework, digital forensic investigators can extract relevant activity or event-based data, create custom activity or event-based correlation data, and generate event graphs. This approach is an efficient and practical way to generate actionable insights for large-scale investigations.
|Rhif yr erthygl
|Nifer y tudalennau
|International Journal for Research in Applied Science & Engineering Technology
|Dynodwyr Gwrthrych Digidol (DOIs)
|Cyhoeddwyd - 11 Mai 2023