A Method for Evaluating and Selecting Software Tools for Remote Forensics
dc.contributor.author | Meyer, Maurice | |
dc.contributor.author | Auth, Gunnar | |
dc.contributor.author | Schinner, Alexander | |
dc.date.accessioned | 2021-12-14T10:57:45Z | |
dc.date.available | 2021-12-14T10:57:45Z | |
dc.date.issued | 2021 | |
dc.description.abstract | In today’s networked system environments, remote access to possibly involved IT system components is a fundamental requirement for digital forensics. For con-ducting professional remote forensics investigations in large system landscapes a growing number of software tools, both commercial and open source, is available today. On the other hand, reviews and comparisons of this special type of soft-ware tools are scarce. In support of finding the best-fitting remote forensics tool among the available solutions based on individual requirements and preconditions, this article presents a method for a criteria-based evaluation and selection process. While the method construction generally builds on established procedures for software evaluation and selection, the according criteria catalog including measurement procedures and weightings was derived from literature as well as considerations with experts from the IT security subsidiary of a large German telecom group. Furthermore, the method is demonstrated and validated by applying it to three selected software tools: Cynet, GRR Rapid Response and Velociraptor. | en |
dc.identifier.doi | 10.18420/informatik2021-074 | |
dc.identifier.isbn | 978-3-88579-708-1 | |
dc.identifier.pissn | 1617-5468 | |
dc.identifier.uri | https://dl.gi.de/handle/20.500.12116/37742 | |
dc.language.iso | en | |
dc.publisher | Gesellschaft für Informatik, Bonn | |
dc.relation.ispartof | INFORMATIK 2021 | |
dc.relation.ispartofseries | Lecture Notes in Informatics (LNI) - Proceedings, Volume P-314 | |
dc.subject | Digital Forensics | |
dc.subject | Remote Forensics | |
dc.subject | Indicator of Compromise | |
dc.subject | Software Evaluation | |
dc.subject | Software Selection | |
dc.title | A Method for Evaluating and Selecting Software Tools for Remote Forensics | en |
gi.citation.endPage | 878 | |
gi.citation.startPage | 867 | |
gi.conference.date | 27. September - 1. Oktober 2021 | |
gi.conference.location | Berlin | |
gi.conference.sessiontitle | Workshop: International Workshop on Digital Forensics (WDF) |
Dateien
Originalbündel
1 - 1 von 1