Title :
An Email Forensics Analysis Method Based on Social Network Analysis
Author :
Yanhua Liu ; Guolong Chen ; Lili Xie
Author_Institution :
Coll. of Math. & Comput. Sci., Fuzhou Univ., Fuzhou, China
Abstract :
Computer crime investigation and forensics is an important research work to combat criminal activity in cyberspace. But the complexity of computer criminal groups makes the computer crime forensics to be a challenge. Email is an important communication mean in computer crime communication. So the email forensics is needed to organized crime. This paper proposed an email forensics method based on graph clustering method and social network analysis (SNA). We analyze and mine emails data of the suspicious users´ accounts using the new method, which can create email communication network graph for suspicious computer criminal organizations. The algorithm developed can analyze computer organization´s structure and core members. The effectiveness of the method proposed has been proved by our experimental data and results. The research may help investigators to find more email evidence and case clues and improve investigators´ email forensic capability, especially to the investigation for organized crime.
Keywords :
computer crime; computer network security; data mining; digital forensics; electronic mail; graph theory; network theory (graphs); pattern clustering; SNA; computer crime communication; computer crime forensics; computer criminal group complexity; computer organization structure analysis; core member analysis; cyberspace; email communication network graph; email data mining; email forensics analysis method; graph clustering method; social network analysis; suspicious computer criminal organizations; Communication networks; Computer crime; Computers; Electronic mail; Forensics; Organizations; Social network services; betweenness centrality; core member; email forensics; organized crime; social network analysis (SNA);
Conference_Titel :
Cloud Computing and Big Data (CloudCom-Asia), 2013 International Conference on
Conference_Location :
Fuzhou
Print_ISBN :
978-1-4799-2829-3
DOI :
10.1109/CLOUDCOM-ASIA.2013.38