| Paper | Presentation | Conference | Downloads | Author |
|---|---|---|---|
| Facilitating Electromagnetic Side-Channel Analysis for IoT Investigation: Evaluating the EMvidence Framework | DFRWS USA 2020 | Asanka Sayakkara (University College Dublin), Nhien An Le Khac (University College Dublin), and Mark Scanlon (University College Dublin) | |
| An Empirical Study of the NTFS Cluster Allocation Behavior Over Time | DFRWS USA 2020 | Martin Karresand (Norwegian University of Science and Technology (NTNU); Swedish Defence Research Agency (FOI)), Stefan Axelsson (Norwegian University of Science and Technology (NTNU); Norwegian Defence Cyber Academy (NDCA)), and Geir Olav Dyrkolbotn (Halmstad University) | |
| Unifying Metadata-Based Storage Reconstruction and Carving with LAYR | DFRWS USA 2020 | Janine Schneider (Friedrich-Alexander-Universität Erlangen-Nürnberg (FAU)), Hans-Peter Deifel (Friedrich-Alexander-Universität Erlangen-Nürnberg (FAU)), Stefan Milius (Friedrich-Alexander-Universität Erlangen-Nürnberg (FAU)), and Felix Freiling (Friedrich-Alexander-Universität Erlangen-Nürnberg (FAU)) | |
| Generic Metadata Time Carving | DFRWS USA 2020 | Rune Nordvik (Norwegian University of Science and Technology; Norwegian Police University College), Kyle Porter (Norwegian University of Science and Technology), Fergus Toolan (Norwegian Police University College), Stefan Axelsson (Norwegian University of Science and Technology; Halmstad University), and Katrin Franke (Norwegian University of Science and Technology) | |
| Memory FORESHADOW: Memory FOREnSics of HArDware cryptOcurrency Wallets – A Tool and Visualizaton Framework | DFRWS USA 2020 | Tyler Thomas (University of New Haven (UNHcFREG)), Mathew Piscitelli (University of New Haven (UNHcFREG)), Ilya Shavrov (University of New Haven (UNHcFREG)), and Ibrahim Baggili (University of New Haven (UNHcFREG)) | |
| Memory Analysis of macOS Page Queues | DFRWS USA 2020 | Andrew Case (Volatility Foundation), Modhuparna Manna (Louisiana State University), Ryan Maggio (Louisiana State University), and Golden Richard (Louisiana State University) | |
| Hiding Process Memory via Anti-Forensic Techniques | DFRWS USA 2020 | Ralph Palutke (Friedrich-Alexander Universität Erlangen-Nürnberg), Frank Block (Friedrich-Alexander Universität Erlangen-Nürnberg (FAU) and ERNW Research GmbH), Patrick Reichenberger (Friedrich-Alexander Universität Erlangen-Nürnberg (FAU)), and Dominik Stripeika (Friedrich-Alexander Universität Erlangen-Nürnberg (FAU)) | |
| School Cyber Risk & Challenges for Community Oriented Policing, Crime Prevention, and Investigations | DFRWS USA 2019 | Nicholas Dubois | |
| Forensic Intelligence Workshop | DFRWS EU 2019 | Mark Scanlon, Ph.D. (University College Dublin), Dr. Katrin Franke, and Zeno Geradts (Netherlands Forensic Institute) | |
| Women: The future of forensic computing?! | DFRWS USA 2019 | Felix Freiling (Friedrich-Alexander-University) and Dr. Katrin Franke | |
| School Cyber Risk & Challenges for Community Oriented Policing, Crime Prevention, and Investigations | DFRWS USA 2019 | Nicholas Dubois | |
| Extreme Damaged Devices | DFRWS USA 2019 | Steve Watson (VTO Labs) | |
| Ka-Chow!!! Driving Android Auto | Joshua Hickman | ||
| Papers & Presentations | |||
| Out Of Sight, But Not Out Of Mind – Traces Of Nearby Devices’ Wireless Transmissions In Volatile Memory | DFRWS EU 2014 | Wicher Minnaard | |
| On The Database Lookup Problem Of Approximate Matching | DFRWS EU 2014 | Frank Breitinger (University of New Haven), Harald Baier (University of Applied Sciences, Darmstadt), and Douglas White (NIST) | |
| OBA2 – An Onion Approach to Binary Code Authorship Attribution | DFRWS EU 2014 | Saed Alrabaee (Concordia University), Noman Saleem, Stere Preda, Lingyo Wang, and Mourad Debbabi (Concordia University) | |
| Information Assurance In A Distributed Forensic Cluster | DFRWS EU 2014 | Nicholas Pringle and Mikhaila Burgess | |
| Windows Surface RT Tablet Forensics | DFRWS EU 2014 | Asif Iqbal (Athena Labs and Zayed University), Hanan Alobaidli (Athena Labs), Andrew Marrington (Zayed University), and Andy Jones (Edith Crowan University and University of South Australia) | |
| Robust Linux Memory Acquisition with Minimal Target Impact | DFRWS EU 2014 | Johannes Stuettgen, Michael Cohen (Google) | |
| Practical Use of Approximate Hash Based Matching in Digital Investigations | DFRWS EU 2014 | Petter Christian Bjelland, André Årnes (Norwegian University of Technology and Science), Katrin Franke (Norwegian University of Technology and Science) | |
| OpenLV – Empowering Investigators and First-Responders in the Digital Forensics Process | DFRWS EU 2014 | Brian Kaplan, Matthew Geiger (Qintel) | |
| Key-Hiding On The ARM Platform | DFRWS EU 2014 | Alexander Nilsson, Marcus Andersson, Stefan Axelsson (Norwegian University of Science and Technology) | |
| Forensic Analysis of Video File Formats | DFRWS EU 2014 | Thomas Gloe (dence), Andre Fischer, Matthias Kirchner (Binghamton University) | |
| Fast Indexing Strategies for Robust Image Hashes | DFRWS EU 2014 | Christian Winter, Martin Steinebach, York Yannikos | |
| Digital Forensics as a Service – a Game Changer | DFRWS EU 2014 | Ruud van Baar, Harm van Beek (Netherlands Forensic Institute), Erwin van Eijk (Netherlands Forensic Institute) | |
| BitTorrent Sync – First Impressions and Digital Forensic Implications | DFRWS EU 2014 | Jason Farina, Mark Scanlon, Ph.D. (University College Dublin), Tahar Kechadi | |
| Automated Evaluation Of Approximate Matching Algorithms On Real Data | DFRWS EU 2014 | Frank Breitinger (University of New Haven), Vassil Roussev, Ph.D. (University of New Orleans) | |
| Spam Campaign Detection, Analysis, and Investigation | DFRWS EU 2015 | Son Dinh (NCFTA Canada & Concordia University), Taher Azeb (NCFTA Canada & Concordia University), Francis Fortin (University de Montreal), Djedjiga Mouheb (NCFTA Canada & Concordia University), and Mourad Debbabi (NCFTA Canada & Concordia University) | |
| Smart TV Forensics – Digital Traces On Televisions | DFRWS EU 2015 | Abdul Boztas, Remko Riethoven, and Mark Roeloffs (Netherlands Forensic Institute) | |
| SIGMA – A Semantic Integrated Graph Matching Approach For Identifying Reused Functions In Binary Code | DFRWS EU 2015 | Saed Alrabaee (Concordia University), Paria Shirani, Lingyu Wang (Concordia University), and Mourad Debbabi (Concordia University) | |
| Leveraging CybOX to Standardize Representation and Exchange of Digital Forensic Information | DFRWS EU 2015 | Eoghan Casey, Ph.D. (The MITRE Corporation), Greg Back (The MITRE Corporation), and Sean Barnum (The MITRE Corporation) | |
| Investigating Evidence of Mobile Phone Usage by Drivers in Road Traffic Accidents | DFRWS EU 2015 | Graeme Horsman and Lynne Conniss (Northumbria University) | |
| Hviz HTTP(S) Traffic Aggregation and Visualization for Network Forensics | DFRWS EU 2015 | David Gugelmann (ETH Zurich), Fabian Gasser (ETH Zurich), Bernhard Ager (ETH Zurich), and Vincent Lenders (Armasuisse) | |
| Forensic Analysis of a Sony PlayStation 4 – A First Look | DFRWS EU 2015 | Allen Davies (Sytech Digital Forensics), Huw Read (University of South Wales and Noroff University College), Konstantinos Xynos (University of South Wales), and Iain Sutherland (Noroff University College) | |
| Fast Contraband Detection In Large Capacity Disk Drives | DFRWS EU 2015 | Phil Penrose, William Buchanan, and Richard Macfarlane (Edinburgh Napier University) | |
| Designing Robustness and Resilience in Digital Investigation Laboratories | DFRWS EU 2015 | Philipp Amann (European Cybercrime Centre) and Joshua James (Digital Forensic Investigation Research Laboratory) | |
| Characterization Of The Windows Kernel Version Variability For Accurate Memory Analysis | DFRWS EU 2015 | Michael Cohen (Google) | |
| Acquisition and Analysis of Compromised Firmware Using Memory Forensics | DFRWS EU 2015 | Johannes Stüttgen, Stefan Voemel, and Michael Denzel (Friedrich-Alexander-Universität Erlangen-Nürnberg) | |
| A Scalable File Based Data Store For Forensic Analysis | DFRWS EU 2015 | Flavio Cruz (Carnegie Mellon University), Andreas Moser (Google), and Michael Cohen (Google) | |
| Tor Forensics on Windows OS | DFRWS EU 2015 | Mattia Epifani (ITTIG - CNR), Marco Scarito, Francesco Picasso (Reality Net) | |
| The Evidence Project – Bridging The Gap In The Exchange Of Digital Evidence Across Europe | DFRWS EU 2015 | Fabrizio Turchi (Italian National Research Council), Maria Angela Biasiotti, and Mattia Epifani | |
| On Criteria for Evaluating Similarity Digest Schemes | DFRWS EU 2015 | Jonathan Oliver (TrendMicro) | |
| How To Search Extracted Data | DFRWS EU 2015 | Javier Collado (NowSecure, Inc) | |
| How I Forced An Android Vulnerability Into Bypassing Mdm Restrictions + Diy – Android Malware Analysis | DFRWS EU 2015 | Zubair Ashraf (IBM) | |
| Fast and Generic Malware Triage Using openioc_scan Volatility Plugin | DFRWS EU 2015 | Takahiro Haruyama (Internet Initiative Japan Inc.) | |
| Digital Forensics – Behind the Scenes | DFRWS EU 2015 | David-Olivier Jaquet-Chiffelle (University of Lausanne) | |
| A Theoretic Framework For Evaluating Similarity Digesting Tools | DFRWS EU 2015 | Liwei Ren (TrendMicro) | |
| Virtual Currencies | DFRWS EU 2016 | André Fischer, Jakob Hasse, and Thomas Gloe (dence) | |
| Pool Tag: Quick Scanning for Windows Memory Analysis | DFRWS EU 2016 | Joe Sylve, Ph.D. (BlackBag Technologies), Vico Marziale, Ph.D. (BlackBag Technologies), and Golden Richard III, Ph.D. (Louisiana State University) |