You are currently viewing Automated DFIR in Windows operating system

Automated DFIR in Windows operating system

Article
Link to Google Scholar

Authors: Eva Marková, Sophia Petra Krišáková, Pavol Sokol

Introduction

An important aspect of digital forensics data research involves creating datasets that meet specific expectations and requirements. Generally, there is no single dataset suitable for all research purposes in the field of digital forensics [1, 2]. Researchers encounter various challenges when using, creating, and sharing datasets. For our research, we require datasets that depict real-world scenarios encountered in security incidents. The main aim is to develop a suitable dataset for comparing methods in digital evidence analysis, which can be applied to investigate different issues.