Extending The Sleuth Kit and its underlying model for pooled storage file system forensic analysis

Digital Investigation(2017)

引用 7|浏览15
暂无评分
摘要
Carrier's book File System Forensic Analysis is one of the most comprehensive sources when it comes to the forensic analysis of file systems. Published in 2005, it provides details about the most commonly used file systems of that time as well as a process model to analyze file systems in general. The Sleuth Kit is the implementation of Carrier's model and it is still widely used during forensic analyses today—standalone or as a basis for forensic suites such as Autopsy.
更多
查看译文
关键词
File systems,Pooled storage,Forensic analysis,ZFS,The Sleuth Kit
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要