Title :
A Computer Forensics Model Based On Danger Theory
Author :
Peng, Lingxi ; Li, Zhengde ; Zeng, Jinquan ; Zhang, Jian ; Liu, Caiming ; Liang, ChunLin
Author_Institution :
Sichuan Univ., Chengdu
Abstract :
To effectively collect electronic evidences of computer crime, a novel danger theory based computer dynamic model (Demed) is proposed. With definitions of self, non-self and detector, the intrusion detection sub-model is given, which is composed of memory cell set, mature cells set, and immature cells set. Then, the danger theory based computer dynamic forensics sub-model is further given. Both the theory analysis and experimental results show that Demed provides an effective approach for computer dynamic forensics.
Keywords :
computer crime; computer crime; computer dynamic model; computer forensic model; danger theory; electronic evidence; Application software; Artificial immune systems; Biological system modeling; Buffer storage; Computer crime; Diseases; Forensics; Immune system; Information technology; Intrusion detection; artificial immune system; danger theory; dynamic computer forensics; intrusion detection;
Conference_Titel :
Intelligent Information Technology Application, Workshop on
Conference_Location :
Zhang Jiajie
Print_ISBN :
978-0-7695-3063-5
DOI :
10.1109/IITA.2007.57