Quantitative Computational Framework For Analyzing Evidence To Identify Attack Intention And Strategy In Network Forensics

dc.contributor.authorHassun Mosa, Mohammad Rasmi
dc.date.accessioned2019-01-08T06:17:15Z
dc.date.available2019-01-08T06:17:15Z
dc.date.issued2013-06
dc.description.abstractThe increasing number of cyber crimes has motivated network forensics researchers to develop new techniques to analyze and investigate these crimes. Although cyber crimes produce a large volume of evidence, analyzing and measuring the extent of the damages caused by these crimes are difficult because of the overwhelming amount of evidence involved in each case. Thus, current cyber crime investigation techniques are costly and time consuming. In addition, these techniques normally use active and reactive processes to analyze cyber crimes, and such processes start after the cyber crime has been identified, which makes identifying useful evidence difficult. Moreover, the information required to understand and analyze cyber crime factors such as the intention and strategy of the crime are limited. This thesis proposes a new framework to analyze cyber crime evidence. The proposed framework aims to use cyber crime evidence to reconstruct attack intentions and estimate similar attack strategies. The intentions are identified through a new algorithm called Attack Intention Analysis, which predicts cyber crime intentions by combining Dempster-Shafer theory and a causal network. Similar attack strategies have been estimated by using one of the two proposed methods. The first method creates a new model that uses evidence when the intentions for a cyber crime are undetected. This model aims to measure similar evidence between new and pre-existing cyber crime cases to estimate similar strategies.en_US
dc.identifier.urihttp://hdl.handle.net/123456789/7487
dc.language.isoenen_US
dc.publisherUniversiti Sains Malaysiaen_US
dc.subjectAnalyzing Evidence To Identify Attack Intentionen_US
dc.subjectStrategy In Network Forensicsen_US
dc.titleQuantitative Computational Framework For Analyzing Evidence To Identify Attack Intention And Strategy In Network Forensicsen_US
dc.typeThesisen_US
Files
License bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed upon to submission
Description: