Forensic Methodolog...
 
Notifications
Clear all

Forensic Methodology

66 Posts
22 Users
0 Reactions
6,681 Views
(@Anonymous)
Guest
Joined: 1 second ago
Posts: 0
 

A quick question - have we looked at other resources online?

I know there is a Forensics Wiki online aready…


   
ReplyQuote
azrael
(@azrael)
Honorable Member
Joined: 19 years ago
Posts: 656
Topic starter  

Yep 😉

We looked at it, but as it is a restricted resource - which suits its purpose - it isn't apt for a publicly distributable resource …

MediaWiki (which they use) also doesn't have the functionality to partition easily.

I've obtained a free Confluence License, which allows groups and users and fine grained access control, so there can be public and private areas, and it also kills the distribution issue, because it automagically deals with downloads of PDFs -)

( To clarify that … Go to the main page http//www.open-forensics.com/ and in the top right hand corner, under the search box is a little Adobe-esqe PDF icon. Click on this and you get the page downloaded as a PDF … )


   
ReplyQuote
azrael
(@azrael)
Honorable Member
Joined: 19 years ago
Posts: 656
Topic starter  

Quick update … ( And my Mac is still on the blink, so appologies for spelling - the Mac is fine, just won't talk to the public access wi-fi where I work ? )

We have been talking both on the forum and on the wiki for a bit now, so just to bring everyone up-to-date

We have a title, and I am serious, it is

"Digital Evidence Collection and Analysis Framework" - DECAF.

It sets the scope nicely, it clarifys the intentions of the document - there was some debate with regard to the use of the word "Methodology", as this inherently implies "Method" which _isn't_ what we are trying to achieve - "framework" captures the concept much better. We chose "collection" rather than "capture" as, again, it seems to be in more common useage.

I haven't had as many replies as I would like to the invitations that have been issued, yet we have some -), we will move forward from here, and then we'll revisit the board issue as we progress. If anyone would like to be involved, please drop me a line azrael at open-forensics dot com.

Licensing is a wonderfully contecious issue ? There had been a decision to go with CC "No Derivs, No Commercial, Attrib". Yet there are issues with this, as it is not, strictly speaking an "open source" license. It gets better if we remove the "No Derivs" clause - and whilst this means that people can make things from it, with correct handling - this need not affect the percieved quality of our work. More discussion of that in the "Licensing" thread …

Those things being out of the way we move onto project goals, I've posted my starting point on both the "Goals and Roadmap" thread, and also on the wiki. I would be greatful if there would be some input from the Forum - the project will only be worthwhile as long as it addresses the needs of the community - thus - the community needs to let us know what they think the goals should be. Again, if you don't want to post publically - please PM or e-mail me, I will chip in on your behalf azrael at open-forensics dot com.

I am looking to get a first release out roughly 6 months from start date, and then updates/enhancements on a 6 monthly cycle to start with - I think that this is feasable, I don't want to push for more than is wise, and yet, I want it to be a living document as much as is possible, so that it is never too far behind.

So I am going to make the target first release date 1st Feb 2008. 😯

Should concentrate the mind a little -P

Kind Regards to All,

Azrael


   
ReplyQuote
(@ronanmagee)
Estimable Member
Joined: 20 years ago
Posts: 145
 

Liking the name, liking the 6 month cycle. 1st Feb seems good too, thou that means the 6th month after that is August, Just wondering with the way most people take holidays round june/july that might impact the next release? Haha, just jumped the gun there as well! -)


   
ReplyQuote
azrael
(@azrael)
Honorable Member
Joined: 19 years ago
Posts: 656
Topic starter  

http//www.computerworld.com.au/index.php/id;1132639156;fp;2;fpid;1

Obviously I missed a trick on getting AU$500,000* to spend on this over the next two years …

😉

* That's about £202,050 or US$401,570 or, if you happen to care, 17.3 kg of Gold. God I love the Internet !


   
ReplyQuote
 ddow
(@ddow)
Reputable Member
Joined: 21 years ago
Posts: 278
 

To their credit, they've done a lot of groundwork prior to this. Uni S Aus is one of the "go to" schools for computer forensic research.

Still, that isn't chump change.


   
ReplyQuote
(@Anonymous)
Guest
Joined: 1 second ago
Posts: 0
 

Is it going to cost $5,000 like some ISO standard for a single PDF? Because then we have little to worry about… P


   
ReplyQuote
 ddow
(@ddow)
Reputable Member
Joined: 21 years ago
Posts: 278
 

Can't speak for this school, but most schools publish for the reputation. The revenue comes from grants. I have corresponded with a fellow in this PhD program and seen many publications from USA available on their site. Based on that I really doubt there'll be any charge for any of the material. I'm somewhat looking forward to seeing the work having read some of their pubs already.


   
ReplyQuote
azrael
(@azrael)
Honorable Member
Joined: 19 years ago
Posts: 656
Topic starter  

Can you give us the link to their site please ?


   
ReplyQuote
 ddow
(@ddow)
Reputable Member
Joined: 21 years ago
Posts: 278
 

Here's one to Dr Slay's home page and another to some of the research they've done. I know there's another repository out there but don't have time to locate it today. I'll try to re-locate it when things ease up here.

http//www.unisanet.unisa.edu.au/staff/Homepage.asp?Name=Jill.Slay
http//esm.cis.unisa.edu.au/new_esml/


   
ReplyQuote
Page 4 / 7
Share: