Serketzis, N., Katos, V., Ilioudis, C., Baltatzis, D. and Pangalos, G., 2017. Towards a Threat Intelligence Informed Digital Forensics Readiness Framework. In: Twenty-Fifth European Conference on Information Systems (ECIS), 6 June 2017, Guimarães, Portugal.
Full text available as:
|
PDF
2017_ecis.pdf - Accepted Version Available under License Creative Commons Attribution Non-commercial No Derivatives. 185kB | |
Copyright to original material in this document is with the original owner(s). Access to this content through BURO is granted on condition that you use it only for research, scholarly or other non-commercial purposes. If you wish to use it for any other purposes, you must contact BU via BURO@bournemouth.ac.uk. Any third party copyright material in this document remains the property of its respective owner(s). BU grants no licence for further use of that third party material. |
Abstract
Digital Forensic Readiness (DFR) has received little attention by the research community, when compared to the core digital forensic investigation processes. DFR was primarily about logging of security events to be leveraged by the forensic analysis phase. However, the increasing number of security incidents and the overwhelming volumes of data produced mandate the development of more effective and efficient DFR approaches. We propose a DFR framework focusing on the prioritisation, triaging and selection of Indicators of Compromise (IoC) to be used in investigations of security incidents. A core component of the framework is the contextualisation of the IoCs to the underlying organisation, which can be achieved with the use of clustering and classification algoriihms and a local IoC database.
Item Type: | Conference or Workshop Item (Paper) |
---|---|
Uncontrolled Keywords: | Digital Forensic Readiness; Threat Intelligence; Indicators of Compromise |
Group: | Faculty of Science & Technology |
ID Code: | 30391 |
Deposited By: | Symplectic RT2 |
Deposited On: | 19 Feb 2018 12:08 |
Last Modified: | 14 Mar 2022 14:09 |
Downloads
Downloads per month over past year
Repository Staff Only - |