| Paper | Presentation | Conference | Downloads | Author |
|---|---|---|---|
| File Marshal – Automatic Extraction of Peer-to-Peer Data | DFRWS USA 2007 | Frank Adelstein (ATC-NY), Rob Joyce (ATC-NY) | |
| Forensic Data Recovery and Examination of Magnetic Swipe Card Cloning Devices | DFRWS USA 2007 | Gerry Masters(QinetiQ), Philip Turner (QinetiQ,) | |
| Forensic Memory Analysis – From Stack and Code to Execution History | DFRWS USA 2007 | Ali Reza Arasteh (Concordia University), Mourad Debbabi (Concordia University) | |
| Introducing the Microsoft Vista Log File Format | DFRWS USA 2007 | Andreas Schuster (Deutsche Telekom AG) | |
| Issues with Imaging Drives Containing Faulty Sectors | DFRWS USA 2007 | James R. Lyle (National Institute of Standards and Technology), Mark Wozar (National Institute of Standards and Technology) | |
| Specifying Digital Forensics – A Forensics Policy Approach | DFRWS USA 2007 | Carol Taylor (University of Idaho), Barbara Endicott-Popovsky (University of Washington), Deborah A. Frincke (Pacific Northwest National Laboratory) | |
| The VAD Tree – A Process-Eye View of Physical Memory | DFRWS USA 2007 | Brendan Dolan-Gavitt (MITRE Corporation) | |
| A Brief Study of Time | DFRWS USA 2007 | Florian Buchholz (James Madison University) and Brett Tjaden (James Madison University) | |
| BodySnatcher – Towards Reliable Volatile Memory Acquisition by Software | DFRWS USA 2007 | Bradley Schatz (Evimetry) | |
| Capture – A Tool for Behavioral Analysis of Applications and Documents | DFRWS USA 2007 | Christian Seifert (Victoria University of Wellington), Ramon Steenson (Victoria University of Wellington), Ian Welch (Victoria University of Wellington), Peter Komisarczuk (Victoria University of Wellington), and Barbara Endicott-Popovsky (University of Washington) | |
| Carving Contiguous and Fragmented Files with Object Validation | DFRWS USA 2007 | Simson Garfinkel, Ph.D. (Naval Postgraduate School, Harvard University) | |
| Digital Forensic Text String Searching – Improving Information Retrieval Effectiveness by Thematically Clustering Search Results | DFRWS USA 2007 | Nicole Beebe, Ph.D. (UTSA) and Jan Guynes Clark (UTSA) | |
| Massive Threading – Using GPUs to Increase the Performance of Digital Forensics Tools | DFRWS USA 2007 | Lodovico Marziale (University of New Orleans), Golden G. Richard III (University of New Orleans), and Vassil Roussev (University of New Orleans) | |
| Multi-Resolution Similarity Hashing | DFRWS USA 2007 | Vassil Roussev (University of New Orleans), Golden G. Richard III (University of New Orleans), and Lodovico Marziale (University of New Orleans) | |
| A Cyber Forensics Ontology – Creating a New Approach to Studying Cyber Forensics | DFRWS USA 2006 | Ashley Brinson (Purdue University), Abigail Robinson (Purdue University), Marcus Rogers (Purdue University) | |
| A Survey of Forensic Characterization Methods for Physical Devices | DFRWS USA 2006 | Nitin Khanna (Purdue University), Aravind K. Mikkilineni (Purdue University), Anthony F. Martone (Purdue University), Gazi N. Ali (Purdue University), George T.-C. Chiu (Purdue University), Jan P. Allebach (Purdue University), Edward J. Delp (Purdue University) | |
| An Empirical Study of Automatic Event Reconstruction Systems | DFRWS USA 2006 | Sundararaman Jeyaraman (Purdue University), Mikhail J. Atallah (Purdue University) | |
| Arriving at an Anti-forensics Consensus – Examining How to Define and Control the Anti-forensics Problem | DFRWS USA 2006 | Ryan Harris (Purdue University) | |
| Cross-Drive Analysis | DFRWS USA 2006 | Simson Garfinkel (Harvard University) | |
| Current Cyber Investigation Challenges in Digital Forensics | DFRWS USA 2006 | Ted Lindsey | |
| Detecting False Captioning Using Common Sense Reasoning | DFRWS USA 2006 | Sangwon Lee (Northwestern University), David A. Shamma (Northwestern University), Bruce Gooch (Northwestern University) | |
| Identifying Almost Identical Files Using Context Triggered Piecewise Hashing | DFRWS USA 2006 | Jesse Kornblum (ManTech SMA) | |
| Issues in Building the Digital Forensics Bridge From Computer Science to Judicial Science | DFRWS USA 2006 | Michael Losavio, Deborah Wilson, Adel Elmaghraby, James Graham, S. Srinivasan, David Elder, Marcus Rogers | |
| Knowledge Exploration, Analysis, and Discovery Workshop | DFRWS USA 2006 | Mark Maybury, Penny Chase | |
| md5bloom – Forensic Filesystem Hashing Revisited | DFRWS USA 2006 | Vassil Roussev (University of New Orleans), Yixin Chen, (University of New Orleans), Timothy Bourg (University of New Orleans), Golden Richard III (University of New Orleans) | |
| Searching for Processes and Threads in Microsoft Windows Memory Dumps | DFRWS USA 2006 | Andreas Schuster (Deutsche Telekom AG) | |
| Selective and Intelligent Imaging using Digital Evidence Bags | DFRWS USA 2006 | Philip Turner (QinetiQ) | |
| XIRAF – Ultimate Forensic Querying | DFRWS USA 2006 | W. Alink (Netherlands Forensic Insitute), R.A.F. Bhoedjang (Netherlands Forensic Insitute), P.A. Boncz (Centrum voor Wiskunde en Informatica), A.P. de Vries (Centrum voor Wiskunde en Informatica) | |
| A Correlation Method for Establishing Provenance of Timestamps in Digital Evidence | DFRWS USA 2006 | Bradley Schatz (Queensland University of Technology), George Mohay (Queensland University of Technology), Andrew Clark (Queensland University of Technology) | |
| A Strategy for Testing Hardware Write Block Devices | DFRWS USA 2006 | James Lyle (NIST) |