2008 Third International Workshop on Systematic Approaches to Digital Forensic Engineering Cognitive-Maps Based Investigation of Digital Security Incidents May 22-May 22 ISBN: 978-0-7695-3171-7
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/SADFE.2008.20
Abstract Investigation of security incidents is of great importance as it allows to trace back the actions taken by the intruders. In this paper we develop a formal technique for digital investigation based on the use of Incident Response Probabilistic Cognitive Maps. Three main issues are addressed here: (1) construction and extraction of plausible known attack scenarios, (2) construction of hypothetical scenarios and their validation using a logic-based formalism, and (3) selection of optimal countermeasures addressing the detected attacks.
Index Terms:
Digital investigation, Incident Response Probabilistic Cognitive Maps, attack scenarios identification, hypothetical scenarios validation, countermeasures selection
Citation:
Slim Rekhis, Jihene Krichene, Noureddine Boudriga, "Cognitive-Maps Based Investigation of Digital Security Incidents," sadfe, pp.25-40, 2008 Third International Workshop on Systematic Approaches to Digital Forensic Engineering, 2008 Usage of this product signifies your acceptance of the Terms of Use. | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||