A novel digital forensic framework for data breach investigation

Data breaches are becoming an increasingly prevalent and global concern due to their massive impact. One of the primary challenges in investigating data breach incidents is the unavailability of a specific framework that acknowledges the characteristics of a data breach incident and provides clear s...

Full description

Saved in:
Bibliographic Details
Main Authors: Hakim, Arif Rahman, Ramli, Kalamullah, Gunawan, Teddy Surya, Windarta, Susila
Format: Article
Language:English
English
Published: IEEE 2023
Subjects:
Online Access:http://irep.iium.edu.my/105245/7/105245_A%20novel%20digital%20forensic.pdf
http://irep.iium.edu.my/105245/8/105245_A%20novel%20digital%20forensic_Scopus.pdf
http://irep.iium.edu.my/105245/
https://ieeexplore.ieee.org/abstract/document/10108925
https://doi.org/10.1109/ACCESS.2023.3270619
Tags: Add Tag
No Tags, Be the first to tag this record!
id my.iium.irep.105245
record_format dspace
spelling my.iium.irep.1052452023-06-27T07:34:32Z http://irep.iium.edu.my/105245/ A novel digital forensic framework for data breach investigation Hakim, Arif Rahman Ramli, Kalamullah Gunawan, Teddy Surya Windarta, Susila TK7885 Computer engineering Data breaches are becoming an increasingly prevalent and global concern due to their massive impact. One of the primary challenges in investigating data breach incidents is the unavailability of a specific framework that acknowledges the characteristics of a data breach incident and provides clear steps on how the investigative framework can comprehensively answer what, who, when, where, why, and how (5WH) questions. This paper aims to develop a novel digital forensic investigation framework that can overcome these data breach investigation challenges. The proposed framework utilizes the data breach breakdown phases to analyze data breach incidents according to their characteristics. The main contribution of our work is a novel digital forensic framework for data breach investigation that enhances the 5WH analysis depth by utilizing evidence classification and artifact visualization based on data breach breakdown phases. Furthermore, we design the framework components to provide comprehensive analysis results that make it easier for investigators to summarize the answers to the 5WH questions. To validate the framework, we apply it to a case study of enterprise-level data breach incidents. Based on the case study analysis, the proposed investigation framework successfully provides all the answers to the 5WH questions. This comprehensive answering ability is the study’s fundamental strength compared to other digital forensic investigation frameworks. IEEE 2023-04-26 Article PeerReviewed application/pdf en http://irep.iium.edu.my/105245/7/105245_A%20novel%20digital%20forensic.pdf application/pdf en http://irep.iium.edu.my/105245/8/105245_A%20novel%20digital%20forensic_Scopus.pdf Hakim, Arif Rahman and Ramli, Kalamullah and Gunawan, Teddy Surya and Windarta, Susila (2023) A novel digital forensic framework for data breach investigation. IEEE Access, 11. pp. 42644-42659. E-ISSN 2169-3536 https://ieeexplore.ieee.org/abstract/document/10108925 https://doi.org/10.1109/ACCESS.2023.3270619
institution Universiti Islam Antarabangsa Malaysia
building IIUM Library
collection Institutional Repository
continent Asia
country Malaysia
content_provider International Islamic University Malaysia
content_source IIUM Repository (IREP)
url_provider http://irep.iium.edu.my/
language English
English
topic TK7885 Computer engineering
spellingShingle TK7885 Computer engineering
Hakim, Arif Rahman
Ramli, Kalamullah
Gunawan, Teddy Surya
Windarta, Susila
A novel digital forensic framework for data breach investigation
description Data breaches are becoming an increasingly prevalent and global concern due to their massive impact. One of the primary challenges in investigating data breach incidents is the unavailability of a specific framework that acknowledges the characteristics of a data breach incident and provides clear steps on how the investigative framework can comprehensively answer what, who, when, where, why, and how (5WH) questions. This paper aims to develop a novel digital forensic investigation framework that can overcome these data breach investigation challenges. The proposed framework utilizes the data breach breakdown phases to analyze data breach incidents according to their characteristics. The main contribution of our work is a novel digital forensic framework for data breach investigation that enhances the 5WH analysis depth by utilizing evidence classification and artifact visualization based on data breach breakdown phases. Furthermore, we design the framework components to provide comprehensive analysis results that make it easier for investigators to summarize the answers to the 5WH questions. To validate the framework, we apply it to a case study of enterprise-level data breach incidents. Based on the case study analysis, the proposed investigation framework successfully provides all the answers to the 5WH questions. This comprehensive answering ability is the study’s fundamental strength compared to other digital forensic investigation frameworks.
format Article
author Hakim, Arif Rahman
Ramli, Kalamullah
Gunawan, Teddy Surya
Windarta, Susila
author_facet Hakim, Arif Rahman
Ramli, Kalamullah
Gunawan, Teddy Surya
Windarta, Susila
author_sort Hakim, Arif Rahman
title A novel digital forensic framework for data breach investigation
title_short A novel digital forensic framework for data breach investigation
title_full A novel digital forensic framework for data breach investigation
title_fullStr A novel digital forensic framework for data breach investigation
title_full_unstemmed A novel digital forensic framework for data breach investigation
title_sort novel digital forensic framework for data breach investigation
publisher IEEE
publishDate 2023
url http://irep.iium.edu.my/105245/7/105245_A%20novel%20digital%20forensic.pdf
http://irep.iium.edu.my/105245/8/105245_A%20novel%20digital%20forensic_Scopus.pdf
http://irep.iium.edu.my/105245/
https://ieeexplore.ieee.org/abstract/document/10108925
https://doi.org/10.1109/ACCESS.2023.3270619
_version_ 1769841838880980992
score 13.211869