Prof Bill Buchanan B.Buchanan@napier.ac.uk
Professor
Cloud-based digital forensics evaluation test (D-FET) platform.
Buchanan, William J; Macfarlane, Richard; Flandrin, Flavien; Graves, Jamie; Fan, Lu; Ekonomou, Elias; Bose, Niladri; Ludwiniak, Robert
Authors
Rich Macfarlane R.Macfarlane@napier.ac.uk
Associate Professor
Flavien Flandrin
Jamie Graves
Lu Fan
Elias Ekonomou
Niladri Bose
Robert Ludwiniak r.ludwiniak@napier.ac.uk
Lecturer
Abstract
This paper outlines the specification of the Cloud-based DFET platform which is used to evaluate the performance of digital forensics tools, which aim to detect the presence of trails of evidence, such as for the presence of illicit images and determination of user accounts from a host. Along with measuring key quality metrics, such as truepositives, and false-positives, it also measures operational performance, such as for the speed of success, CPU utilization and memory usage. This is used to determine the basic footprint of the package-under-test. The paper presents a proof-of-concept of the system using the VMware vSphere Hypervisor (ESXi) within the vCenter Cloud management infrastructure, which provides a cluster environment, and supports the creation and instantiation of a well-defined virtual test operation system. The infrastructure has been used within a teaching environment for two semesters, and has been shown to cope well in terms of performance and administration. Two key evaluation points related to whether a cloudbased infrastructure will provide improvement on existing stand-alone and workstation-based virtualisation are related to the improvement in energy consumption and in the CPU utilization footprint for each virtual machine. Thus the results show some metrics related to the energy and CPU consumptions of the created digital forensics instances, which can be used to justify the improvements in energy consumption, as opposed to stand-alone instances, and in the scalability of the infrastructure.
Citation
Buchanan, W. J., Macfarlane, R., Flandrin, F., Graves, J., Fan, L., Ekonomou, E., …Ludwiniak, R. (2011, June). Cloud-based digital forensics evaluation test (D-FET) platform. Paper presented at Cyberforensics 2011
Presentation Conference Type | Conference Paper (unpublished) |
---|---|
Conference Name | Cyberforensics 2011 |
Start Date | Jun 27, 2011 |
End Date | Jun 28, 2011 |
Publication Date | 2011 |
Deposit Date | May 30, 2011 |
Publicly Available Date | May 16, 2017 |
Peer Reviewed | Peer Reviewed |
Keywords | Cloud computing; digital forensics; D-Fet platform; evidence trails; VMware vSphere Hypervisor (ESXi); |
Public URL | http://researchrepository.napier.ac.uk/id/eprint/4429 |
Files
Cloud-based digital forensics evaluation test (D-FET) platform.pdf
(744 Kb)
PDF
You might also like
Cognitive Internet of Everything (CIoE): State of the Art and Approaches
(2017)
Book Chapter
An applied pattern-driven corpus to predictive analytics in mitigating SQL injection attack
(2017)
Conference Proceeding
Applied Machine Learning predictive analytics to SQL Injection Attack detection and prevention
(2017)
Conference Proceeding
Numerical Encoding to Tame SQL Injection Attacks
(2017)
Conference Proceeding
Applied web traffic analysis for numerical encoding of SQL Injection attack features
(2016)
Conference Proceeding
Downloadable Citations
About Edinburgh Napier Research Repository
Administrator e-mail: repository@napier.ac.uk
This application uses the following open-source libraries:
SheetJS Community Edition
Apache License Version 2.0 (http://www.apache.org/licenses/)
PDF.js
Apache License Version 2.0 (http://www.apache.org/licenses/)
Font Awesome
SIL OFL 1.1 (http://scripts.sil.org/OFL)
MIT License (http://opensource.org/licenses/mit-license.html)
CC BY 3.0 ( http://creativecommons.org/licenses/by/3.0/)
Powered by Worktribe © 2024
Advanced Search