• DocumentCode
    23670
  • Title

    A transductive scheme based inference techniques for network forensic analysis

  • Author

    Tian Zhihong ; Jiang Wei ; Li Yang

  • Author_Institution
    Harbin Inst. of Technol., Harbin, China
  • Volume
    12
  • Issue
    2
  • fYear
    2015
  • fDate
    Feb. 2015
  • Firstpage
    167
  • Lastpage
    176
  • Abstract
    Network forensics is a security infrastructure, and becomes the research focus of forensic investigation. However many challenges still exist in conducting network forensics: network has produced large amounts of data; the comprehensibility of evidence extracting from collected data; the efficiency of evidence analysis methods, etc. To solve these problems, in this paper we develop a network intrusion forensics system based on transductive scheme that can detect and analyze efficiently computer crime in networked environments, and extract digital evidence automatically. At the end of the paper, we evaluate our method on a series of experiments on KDD Cup 1999 dataset. The results demonstrate that our methods are actually effective for real-time network forensics, and can provide comprehensible aid for a forensic expert.
  • Keywords
    computer crime; computer network security; digital forensics; digital evidence; evidence analysis methods; network forensic analysis; network intrusion forensics system; real-time network forensics; security infrastructure; transductive scheme based inference techniques; Algorithm design and analysis; Classification algorithms; Feature extraction; Forensics; Security; Telecommunication traffic; Training; digital evidence; network forensics; security; transductive scheme;
  • fLanguage
    English
  • Journal_Title
    Communications, China
  • Publisher
    ieee
  • ISSN
    1673-5447
  • Type

    jour

  • DOI
    10.1109/CC.2015.7084411
  • Filename
    7084411