A novel digital forensic framework for data breach investigation
Data breaches are becoming an increasingly prevalent and global concern due to their massive impact. One of the primary challenges in investigating data breach incidents is the unavailability of a specific framework that acknowledges the characteristics of a data breach incident and provides clear s...
Saved in:
Main Authors: | , , , |
---|---|
Format: | Article |
Language: | English English |
Published: |
IEEE
2023
|
Subjects: | |
Online Access: | http://irep.iium.edu.my/105245/7/105245_A%20novel%20digital%20forensic.pdf http://irep.iium.edu.my/105245/8/105245_A%20novel%20digital%20forensic_Scopus.pdf http://irep.iium.edu.my/105245/ https://ieeexplore.ieee.org/abstract/document/10108925 https://doi.org/10.1109/ACCESS.2023.3270619 |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
id |
my.iium.irep.105245 |
---|---|
record_format |
dspace |
spelling |
my.iium.irep.1052452023-06-27T07:34:32Z http://irep.iium.edu.my/105245/ A novel digital forensic framework for data breach investigation Hakim, Arif Rahman Ramli, Kalamullah Gunawan, Teddy Surya Windarta, Susila TK7885 Computer engineering Data breaches are becoming an increasingly prevalent and global concern due to their massive impact. One of the primary challenges in investigating data breach incidents is the unavailability of a specific framework that acknowledges the characteristics of a data breach incident and provides clear steps on how the investigative framework can comprehensively answer what, who, when, where, why, and how (5WH) questions. This paper aims to develop a novel digital forensic investigation framework that can overcome these data breach investigation challenges. The proposed framework utilizes the data breach breakdown phases to analyze data breach incidents according to their characteristics. The main contribution of our work is a novel digital forensic framework for data breach investigation that enhances the 5WH analysis depth by utilizing evidence classification and artifact visualization based on data breach breakdown phases. Furthermore, we design the framework components to provide comprehensive analysis results that make it easier for investigators to summarize the answers to the 5WH questions. To validate the framework, we apply it to a case study of enterprise-level data breach incidents. Based on the case study analysis, the proposed investigation framework successfully provides all the answers to the 5WH questions. This comprehensive answering ability is the study’s fundamental strength compared to other digital forensic investigation frameworks. IEEE 2023-04-26 Article PeerReviewed application/pdf en http://irep.iium.edu.my/105245/7/105245_A%20novel%20digital%20forensic.pdf application/pdf en http://irep.iium.edu.my/105245/8/105245_A%20novel%20digital%20forensic_Scopus.pdf Hakim, Arif Rahman and Ramli, Kalamullah and Gunawan, Teddy Surya and Windarta, Susila (2023) A novel digital forensic framework for data breach investigation. IEEE Access, 11. pp. 42644-42659. E-ISSN 2169-3536 https://ieeexplore.ieee.org/abstract/document/10108925 https://doi.org/10.1109/ACCESS.2023.3270619 |
institution |
Universiti Islam Antarabangsa Malaysia |
building |
IIUM Library |
collection |
Institutional Repository |
continent |
Asia |
country |
Malaysia |
content_provider |
International Islamic University Malaysia |
content_source |
IIUM Repository (IREP) |
url_provider |
http://irep.iium.edu.my/ |
language |
English English |
topic |
TK7885 Computer engineering |
spellingShingle |
TK7885 Computer engineering Hakim, Arif Rahman Ramli, Kalamullah Gunawan, Teddy Surya Windarta, Susila A novel digital forensic framework for data breach investigation |
description |
Data breaches are becoming an increasingly prevalent and global concern due to their massive impact. One of the primary challenges in investigating data breach incidents is the unavailability of a specific framework that acknowledges the characteristics of a data breach incident and provides clear steps on how the investigative framework can comprehensively answer what, who, when, where, why, and how (5WH) questions. This paper aims to develop a novel digital forensic investigation framework that can overcome these data breach investigation challenges. The proposed framework utilizes the data breach breakdown phases to analyze data breach incidents according to their characteristics. The main contribution of our work is a novel digital forensic framework for data breach investigation that enhances the 5WH analysis depth by utilizing evidence classification and artifact visualization based on data breach breakdown phases. Furthermore, we design the framework components to provide comprehensive analysis results that make it easier for investigators to summarize the answers to the 5WH questions. To validate the framework, we apply it to a case study of enterprise-level data breach incidents. Based on the case study analysis, the proposed investigation framework successfully provides all the answers to the 5WH questions. This comprehensive answering ability is the study’s fundamental strength compared to other digital forensic investigation frameworks. |
format |
Article |
author |
Hakim, Arif Rahman Ramli, Kalamullah Gunawan, Teddy Surya Windarta, Susila |
author_facet |
Hakim, Arif Rahman Ramli, Kalamullah Gunawan, Teddy Surya Windarta, Susila |
author_sort |
Hakim, Arif Rahman |
title |
A novel digital forensic framework for data breach investigation |
title_short |
A novel digital forensic framework for data breach investigation |
title_full |
A novel digital forensic framework for data breach investigation |
title_fullStr |
A novel digital forensic framework for data breach investigation |
title_full_unstemmed |
A novel digital forensic framework for data breach investigation |
title_sort |
novel digital forensic framework for data breach investigation |
publisher |
IEEE |
publishDate |
2023 |
url |
http://irep.iium.edu.my/105245/7/105245_A%20novel%20digital%20forensic.pdf http://irep.iium.edu.my/105245/8/105245_A%20novel%20digital%20forensic_Scopus.pdf http://irep.iium.edu.my/105245/ https://ieeexplore.ieee.org/abstract/document/10108925 https://doi.org/10.1109/ACCESS.2023.3270619 |
_version_ |
1769841838880980992 |
score |
13.211869 |