Académique Documents
Professionnel Documents
Culture Documents
net/publication/320758716
CITATION READS
1 133
1 author:
SEE PROFILE
Some of the authors of this publication are also working on these related projects:
All content following this page was uploaded by Dr. Parag H Rughani on 03 December 2018.
Abstract: With increase in number of Internet and smartphone users, cyber crimes are equally increased. Current resources including man power
are not sufficient to investigate and solve cyber crimes with the pace they are committed. Present tools and technology require human interaction
at large scale, which slows down the process. There is acute need to optimize speed and performance of Digital Forensic Tools to keep pace with
the reported cyber crimes. An Artificial Intelligence Based Digital Forensics Framework is proposed in this paper to overcome above issues. The
framework proposed in this paper require minimum user interaction and does majority of routine operations by intelligence acquired from
training. Outcome of the work is mentioned in the form of proposed framework to optimize digital forensics process.
Keywords: Digital Forensics, Artificial Intelligence, Machine Learning, AI Framework, Cyber Crime Investigation, Digital Forensic Tools,
Cyber Crime
1. INTRODUCTION
2. DIGITAL FORENSICS PROCESS AND AVAILABLE Variety of commercial and free tools are available in market
TOOLS to carry out digital forensics. EnCase [10], FTK [11], UFED
[12], Nuix [13], IEF [14], Autopsy [15], XRY [16], etc. are
Forensics as defined by Oxford is “Scientific tests or some of the famous and widely accepted digital forensics
techniques used in connection with the detection of crime”. tools. Reports generated from most of the tools mentioned
If these scientific tests or techniques – mainly computer above are accepted in many of the countries all over the
based – are used in connection with the detection of digital world.
crimes then can be referred as Digital Forensics. In general
terms, the methods and tools used in cyber crimes are Following figure lists few known tools used at various steps
referred as Digital Forensics. The digital forensics or the of digital forensics.
forensics consists of 3 steps namely: Acquisition, Analysis
and Presentation[9].
In last few years these and many other tools have evolved digital forensic tools. Someone used artificial intelligence
like anything. They provide user friendly GUI and high for offline intrusion analysis in network forensics [22],
speed analysis. Custom Filters, Advanced reporting and while someone developed a multi-agent and case-based
carving are key features of most of these tools. They are also reasoning using artificial intelligence [23] and some authors
modified to automate certain processes. However, the demonstrated the ability to automatically correlate events
automation part is not fully implemented as most of the time and objects among a memory image, filesys- tem image, and
user inputs are needed to automate a task. network capture [24].
Looking at current scenario, one can say that the tools However, significant work has been done to improve
available in the market require human interaction and they performance and capability of digital forensic tools for
cannot be operated without skilled resources. Increasing speeding up the investigation process, present tools are still
number of skilled resources is one option to speed up user dependent. There is acute need of a concept for creating
investigation process, while other option is to make the tools intelligent digital forensic tools, which can not only reduce
smart enough to work intelligently for analyzing suspicious burden of the investigator but can also think by itself. It is
data. Many researchers and tool writers are working hard to also important that the future tools individually or as a
make their forensic tools automatic and faster. The efforts component of a kit can address all three steps intelligently.
put by some of the researchers in improving digital forensics Proposed framework in the next section is aiming to achieve
tools are discussed in next section. similar tool which can investigate a case with help of initial
inputs.
3. RELATED WORK
4. PROPOSED FRAMEWORK
Lots of work has been done in improving digital forensic
tools and frameworks. May researchers contributed to this The framework proposed in this paper is a conceptual
process by proposing various frameworks and framework which can help manufacturers and developers in
enhancements. Some of them include digital forensic designing highly intelligent and automated tools to assist
framework for cloud computing[17], Hierarchical, digital forensic investigation process as a whole. The
Objectives-Based Framework [18] and use of GPUs to framework is based on Machine Learning concept and uses
increase the performance of digital forensics tools [19]. AI in each step of the process to make sure decisions taken
Apart from suggestions and proposals some researchers by tools have minimum false positives. However, it is not
worked to compare existing model [20] and predict future of possible to conceptualize a 100% accurate and intelligent
these tools [21]. framework, the possibilities cannot be overlooked for
Many authors work on adding intelligence part to existing mistakes and false positives. The working model may
© 2015-19, IJARCS All Rights Reserved 11
Parag H. Rughani, International Journal of Advanced Research in Computer Science, 8 (8), Sept–Oct 2017,10-14