| Paper | Presentation | Conference | Downloads | Author |
|---|---|---|---|
| An Evaluation Platform for Forensic Memory Acquisition Software | DFRWS USA 2013 | Stefan Voemel and Johannes Stuettgen | |
| Anti-Forensic Resilient Memory Acquisition | DFRWS USA 2013 | Johannes Stüttgen (University of Erlangen-Nuremberg) and Michael Cohen (Google) | |
| Design and Implementation of FROST – Digital Forensic Tools for the OpenStack Cloud Computing Platform | DFRWS USA 2013 | Josiah Dykstra, Ph.D. (National Security Agency) and Alan Sherman | |
| Improved Recovery and Reconstruction of DEFLATEd Files | DFRWS USA 2013 | Ralf Brown (CMU) | |
| Language Translation for File Paths | DFRWS USA 2013 | Neil Rowe (Naval Postgraduate School), Riqui Schwamm, and Simson Garfinkel, Ph.D. (Naval Postgraduate School) | |
| Modern Ships Voyage Data Recorders – A Forensics Perspective on the Costa Concordia Shipwreck | DFRWS USA 2013 | Mario Piccinelli and Paolo Gubian | |
| A General Strategy for Differential Forensic Analysis | DFRWS USA 2012 | Simson Garfinkel, Ph.D. (U.S. Census Bureau), Alex Nelson, Ph.D. (NIST), Joel Young | |
| Acquiring Forensic Evidence from Infrastructure-as-a-Service Cloud Computing | DFRWS USA 2012 | Josiah Dykstra, Ph.D. (National Security Agency), Alan Sherman | |
| An Analysis of Ext4 for Digital Forensics | DFRWS USA 2012 | Kevin Fairbanks | |
| Bin-Carver – Automatic Recovery of Binary Executable Files | DFRWS USA 2012 | Scott Hand, Zhiqiang Lin (The Ohio State University), Guofei Gu, Bhavani Thuraisingham | |
| Content Triage with Similarity Digests – The M57 Case Study | DFRWS USA 2012 | Vassil Roussev, Ph.D. (University of New Orleans), Candice Quates | |
| Finding and Identifying Text in 900+ Languages | DFRWS USA 2012 | Ralf Brown (CMU) | |
| Surveying The User Space Through User Allocations | DFRWS USA 2012 | Andrew White (Dell Secureworks), Bradley Schatz, Ph.D. (Schatz Forensic), Ernest Foo | |
| Triage in Digital Forensics | DFRWS USA 2012 | Ryan Moore | |
| Visualization in Malware and Forensics | DFRWS USA 2012 | Danny Quist | |
| An Automated Timeline Reconstruction Approach for Digital Forensic Investigations | DFRWS USA 2012 | Christopher Hargreaves and Jonathan Patterson | |
| IntroLib – Efficient and Transparent Library Call Introspection for Malware Forensics | DFRWS USA 2012 | Zhui Deng, Dongyan Xu (Purdue University), Xiangyu Zhang, and Xuxian Jiang (North Carolina State University) | |
| Lessons Learned Writing Computer Forensics Tools and Managing a Large Digital Evidence Corpus | DFRWS USA 2012 | Simson Garfinkel, Ph.D. (Naval Postgraduate School) | |
| Social Networking Applications on Mobile Devices | DFRWS USA 2012 | Noora Al Mutawa, Ibrahim Baggili (University of New Haven), and Andrew Marrington (Zayed University) | |
| Testing the National Software Reference Library | DFRWS USA 2012 | Neil Rowe (Naval Postgraduate School) | |
| The Use of Random Sampling in Investigations Involving Child Abuse Material | DFRWS USA 2012 | Michael Wilkinson, Brian Jones, and Syd Pleno | |
| Using NLP Techniques for File Fragment Classification | DFRWS USA 2012 | Oles Zhulyn, Simran Fitzgerald, and George Mathews, and Colin Morris | |
| An Evaluation of Forensic Similarity Hashes | DFRWS USA 2011 | Vassil Roussev, Ph.D. (University of New Orleans) | |
| CAT Detect – A Tool for Detecting Inconsistency in Computer Activity Timelines | DFRWS USA 2011 | Andrew Marrington (Zayed University), Ibrahim Baggili (University of New Haven), George Mohay, Andrew Clark | |
| Detecting Data Theft Using Stochastic Forensics | DFRWS USA 2011 | Jonathan Grier (Grier Forensics) | |
| Digital Forensics in Consumer Online Privacy Class Actions | DFRWS USA 2011 | Scott Kamber | |
| Distributed Forensics and Incident Response in the Enterprise | DFRWS USA 2011 | Michael Cohen (Google), Darren Bilby, Germano Caronni | |
| eDiscovery Case Study | DFRWS USA 2011 | A. J. Krouse | |
| Empirical Analysis of Solid State Disk Data Retention when used with Contemporary Operating Systems | DFRWS USA 2011 | Christopher King | |
| Extracting the Windows Clipboard from Memory | DFRWS USA 2011 | James Okolica, Gilbert Peterson (US Air Force Institute of Technology) |