Expert system using fuzzy Petri nets in computer forensics

被引:0
作者
Hwang, Hyun-Uk
Kim, Min-Soo
Noh, Bong-Nam
机构
来源
ADVANCES IN HYBRID INFORMATION TECHNOLOGY | 2007年 / 4413卷
关键词
computer forensics; fuzzy Petri nets; inference rule; hacking; expert system;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
In the past, computer forensics was only used by means of investigation. However, nowadays, clue to the sharp increase of awareness of computer security, Computer forensics becomes very significant even to the nonprofessionals, and it needs inference as well as the integrity and reliability of the procedure. In this paper, we describe the inference rules using Fuzzy Petri Nets and adapt the collected data in a compromised system to a proposition for inference of the intrusion information. The inferred results are expressed as formalized 5W1H format. The COM-FEX(COMputer Forensic EXpert system) is inferable, even if the data is damaged in certain section, and the inference function of uncertainty is improved. This is useful to a system administrator who has weak analyzing ability of hacking, and it has improved capacity of managing the system security.
引用
收藏
页码:312 / 322
页数:11
相关论文
共 15 条
[1]  
[Anonymous], ARTIFICAL INTELLIGEN
[2]  
[Anonymous], COMPUTER FORENSICS C
[3]  
Carrier B., 2003, International Journal of Digital Evidence, V1
[4]  
Carrier B., 2003, OPEN SOURCE DIGITAL
[5]  
CARRIER B, 2006, SLEUTHKIT V2 04
[6]  
CHEN S, 1990, SOFTWARE MAINTENANCE, V2, P3
[7]  
*GUID SOFTW, 2005, ENC PROD DESCR WHIT
[8]  
HWANG H, 2003, WISA 2003
[9]  
Kruse II W. G., 2001, COMPUTER FORENSICS I
[10]  
Marcella A., 2002, Cyber Forensics: A Field Manual for Collecting, Examining, and Preserving Evidence of Computer Crimes