2013
DOI: 10.1016/j.diin.2013.04.002
|View full text |Cite
|
Sign up to set email alerts
|

On-scene triage open source forensic tool chests: Are they effective?

Abstract: Considering that a triage related task may essentially make-or-break a digital investigation and the fact that a number of triage tools are freely available online but there is currently no mature framework for practically testing and evaluating them, in this paper we put three open source triage tools to the test. In an attempt to identify common issues, strengths and limitations we evaluate them both in terms of efficiency and compliance to published forensic principles. Our results show that due to the incr… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
4
0
1

Year Published

2014
2014
2024
2024

Publication Types

Select...
5
2
2

Relationship

0
9

Authors

Journals

citations
Cited by 12 publications
(5 citation statements)
references
References 5 publications
0
4
0
1
Order By: Relevance
“…The concept of DF triage, particular technical approaches involving the use of software to preview a device's digital content, remains relatively well covered in academic literature (see for example ‐ [12‐14]). However, the aspect of decision‐making, particularly in the context of DBDT undertaken by first responders, lacks analysis.…”
Section: Decision‐based Device Triage’ (Dbdt) At Scenementioning
confidence: 99%
See 1 more Smart Citation
“…The concept of DF triage, particular technical approaches involving the use of software to preview a device's digital content, remains relatively well covered in academic literature (see for example ‐ [12‐14]). However, the aspect of decision‐making, particularly in the context of DBDT undertaken by first responders, lacks analysis.…”
Section: Decision‐based Device Triage’ (Dbdt) At Scenementioning
confidence: 99%
“…The concept of DF triage, particular technical approaches involving the use of software to preview a device's digital content, remains relatively well covered in academic literature (see for example - [12][13][14]).…”
Section: Decis Ion -Ba S Ed De Vice Triag E' (Db Dt ) At Scenementioning
confidence: 99%
“…We base our conclusion on the provided description of the system. Shiaeles et al [55] review three open source triage tools and suggest the ways to improve them. The TriageIR, TR3Secure, and Kludge tools are tested for various Microsoft Windows versions.…”
Section: A Hash Database Index Filementioning
confidence: 99%
“…Although open source tools and their effectiveness within computer forensics have been comprehensively tested [4], [5] & [6], the aim of this paper is to determine the effectiveness of open-source carving tools on split dd and EWF images and not the comparison, or effectiveness, of the tools themselves. For this reason, both Scalpel and Foremost have been chosen as they are/were the leading authority on open source carving tools, regardless of the fact that Scalpel is a re-write of Foremost [7], which is no longer supported.…”
Section: Introductionmentioning
confidence: 99%