NexGenDFA: A Framework for Next Generation Digital Forensic Analysis
NexGenDFA:下一代数字取证分析框架
基本信息
- 批准号:RGPIN-2020-06160
- 负责人:
- 金额:$ 2.11万
- 依托单位:
- 依托单位国家:加拿大
- 项目类别:Discovery Grants Program - Individual
- 财政年份:2022
- 资助国家:加拿大
- 起止时间:2022-01-01 至 2023-12-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
With the spike in the number and scale of cyberattacks, digital forensic (DF) has become an indispensable tool for security experts. Cyberattacks are costing businesses trillions of dollars, and the loss of billions of personal and financial records (and possible meddling with elections). Executing digital forensics after a security incident becomes a necessity to identify root causes and possibly individuals behind the attack. It can also help to avoid future similar incidents, and when possible, accelerate the restoration of any service affected. However, digital forensics is becoming a very complex and overwhelming task due to a number of reasons including; (1) the large number of data sources of forensic interest and sometimes in proprietary formats, (2) the enormous volume of forensic data, and last but not least, (3) the association of new technologies in cyberattacks (Blockchain, Internet of Things (IoT), Connected and Autonomous Vehicles, Drones, and cloud/edge/fog computing). These all add convolution to the processes of digital evidence acquisition, triage and analysis. In this research program, I propose to investigate the design and implementation of a forensic framework and associated tools that use machine learning algorithms combined with big data visual analytics that go beyond the current state of the art of forensic tools. The outcome of the program will help cut the time and cost for digital forensic investigations, by providing digital forensic analyst with the knowledge and tools to better unveil, understand and evidence pieces. Additionally, the program will address real-world data analytic problem leading to enormous social and economic benefits. Last but not least, the program will also contribute to the development of research talents and the training of HQP in machine learning and visual analytics, positioning Canada as a leader in these fields.
随着网络攻击数量和规模的激增,数字取证(DF)已成为安全专家不可或缺的工具。网络攻击给企业造成了数万亿美元的损失,还造成了数十亿个人和财务记录的损失(还可能干预选举)。在安全事件发生后执行数字取证成为确定攻击背后的根本原因和可能的个人的必要条件。它还可以帮助避免未来发生类似事件,并在可能的情况下加速恢复任何受影响的服务。然而,由于许多原因,数字取证正在成为一项非常复杂和压倒性的任务,包括;(1)法医感兴趣的大量数据源,有时是专有格式,(2)大量的法医数据,最后但并非最不重要的是,(3)网络攻击新技术的关联(区块链,物联网(IoT),联网和自动驾驶汽车,无人机和云/边缘/雾计算)。这些都为数字证据的采集、分类和分析过程增加了卷积。在这个研究项目中,我建议研究一个取证框架和相关工具的设计和实现,这些工具使用机器学习算法和大数据可视化分析相结合,超越了取证工具的当前水平。该计划的成果将有助于减少数字取证调查的时间和成本,为数字取证分析师提供更好地揭示、理解和证据碎片的知识和工具。此外,该计划将解决现实世界的数据分析问题,从而带来巨大的社会和经济效益。最后但并非最不重要的是,该计划还将有助于开发研究人才和HQP在机器学习和视觉分析方面的培训,使加拿大成为这些领域的领导者。
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
数据更新时间:{{ journalArticles.updateTime }}
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
ElKhatib, Khalil其他文献
ElKhatib, Khalil的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('ElKhatib, Khalil', 18)}}的其他基金
NexGenDFA: A Framework for Next Generation Digital Forensic Analysis
NexGenDFA:下一代数字取证分析框架
- 批准号:
RGPIN-2020-06160 - 财政年份:2021
- 资助金额:
$ 2.11万 - 项目类别:
Discovery Grants Program - Individual
NexGenDFA: A Framework for Next Generation Digital Forensic Analysis
NexGenDFA:下一代数字取证分析框架
- 批准号:
RGPIN-2020-06160 - 财政年份:2020
- 资助金额:
$ 2.11万 - 项目类别:
Discovery Grants Program - Individual
Risk Assessment of SkyX: An Advanced autonomous Drone Platform for Monitoring Critical Infrastructures****
SkyX 的风险评估:用于监控关键基础设施的先进自主无人机平台****
- 批准号:
537571-2018 - 财政年份:2018
- 资助金额:
$ 2.11万 - 项目类别:
Engage Grants Program
An Integrated Framework for Security Analytics for the Digital Age
数字时代安全分析的集成框架
- 批准号:
DDG-2017-00026 - 财政年份:2018
- 资助金额:
$ 2.11万 - 项目类别:
Discovery Development Grant
An Integrated Framework for Security Analytics for the Digital Age
数字时代安全分析的集成框架
- 批准号:
DDG-2017-00026 - 财政年份:2017
- 资助金额:
$ 2.11万 - 项目类别:
Discovery Development Grant
Using Virtual Reality in Security Monitoring
在安全监控中使用虚拟现实
- 批准号:
507410-2016 - 财政年份:2016
- 资助金额:
$ 2.11万 - 项目类别:
Engage Grants Program
Detecting and fingerprinting network-based DDoS mitigation solutions
检测和识别基于网络的 DDoS 缓解解决方案
- 批准号:
485727-2015 - 财政年份:2015
- 资助金额:
$ 2.11万 - 项目类别:
Engage Grants Program
Securing the Next-Generation Smart Electric Grid
确保下一代智能电网的安全
- 批准号:
341426-2012 - 财政年份:2015
- 资助金额:
$ 2.11万 - 项目类别:
Discovery Grants Program - Individual
Securing the Next-Generation Smart Electric Grid
确保下一代智能电网的安全
- 批准号:
341426-2012 - 财政年份:2014
- 资助金额:
$ 2.11万 - 项目类别:
Discovery Grants Program - Individual
Developing a methodology for vehicular forensic
开发车辆取证方法
- 批准号:
474695-2014 - 财政年份:2014
- 资助金额:
$ 2.11万 - 项目类别:
Engage Grants Program
相似海外基金
Safe and Sustainable by Design framework for the next generation of Chemicals and Materials
下一代化学品和材料的安全和可持续设计框架
- 批准号:
10110559 - 财政年份:2024
- 资助金额:
$ 2.11万 - 项目类别:
EU-Funded
SaTC: CORE: Small: An evaluation framework and methodology to streamline Hardware Performance Counters as the next-generation malware detection system
SaTC:核心:小型:简化硬件性能计数器作为下一代恶意软件检测系统的评估框架和方法
- 批准号:
2327427 - 财政年份:2024
- 资助金额:
$ 2.11万 - 项目类别:
Continuing Grant
The next pandemic? Establishing an experimental framework for assessing virus zoonotic potential using coronaviruses of rodents and humans
下一次大流行?
- 批准号:
EP/Y011414/1 - 财政年份:2023
- 资助金额:
$ 2.11万 - 项目类别:
Research Grant
CAREER: A Decentralized Optimization Framework for Next-Gen Transportation and Power Systems with Large-scale Transportation Electrification
职业生涯:具有大规模交通电气化的下一代交通和电力系统的去中心化优化框架
- 批准号:
2237413 - 财政年份:2023
- 资助金额:
$ 2.11万 - 项目类别:
Standard Grant
Alternative protein sources: growing the next generation computational modelling framework
替代蛋白质来源:发展下一代计算模型框架
- 批准号:
2886049 - 财政年份:2023
- 资助金额:
$ 2.11万 - 项目类别:
Studentship
Two-Dimensional Covalent Organic Framework for Next-Generation Batteries
下一代电池的二维共价有机框架
- 批准号:
DE220101577 - 财政年份:2023
- 资助金额:
$ 2.11万 - 项目类别:
Discovery Early Career Researcher Award
Collaborative Research: CISE-MSI: RPEP: CPS: A Resilient Cyber-Physical Security Framework for Next-Generation Distributed Energy Resources at Grid Edge
合作研究:CISE-MSI:RPEP:CPS:电网边缘下一代分布式能源的弹性网络物理安全框架
- 批准号:
2219733 - 财政年份:2022
- 资助金额:
$ 2.11万 - 项目类别:
Standard Grant
Developing a next-level computational modeling framework to predict the long-term performance of old buildings
开发下一级计算建模框架来预测旧建筑的长期性能
- 批准号:
576903-2022 - 财政年份:2022
- 资助金额:
$ 2.11万 - 项目类别:
Alliance Grants
SaTC: EDU: Collaborative: INteractive VIsualization and PracTice basEd Cybersecurity Curriculum and Training (InviteCyber) Framework for Developing Next-gen Cyber-Aware Workforce
SATC:EDU:协作:基于交互式可视化和实践的网络安全课程和培训 (InviteCyber) 开发下一代网络意识劳动力的框架
- 批准号:
2245148 - 财政年份:2022
- 资助金额:
$ 2.11万 - 项目类别:
Standard Grant
AI Driven Open Source Framework for Next Generation Heat Exchangers
人工智能驱动的下一代热交换器开源框架
- 批准号:
10031841 - 财政年份:2022
- 资助金额:
$ 2.11万 - 项目类别:
Small Business Research Initiative