DESO: Addressing volume and variety in large-scale criminal cases

Research output: Contribution to journalArticlepeer-review

16 Citations (Scopus)

Abstract

This paper proposes a mechanism for dealing with the growing variety and volume of digital evidence in a criminal investigation.

The challenges posed by this growth have been long recognised and documented. There have been solutions aimed at processing bulk data and others based on event correlation or time lines. Instead we examine if there is an alternate method: to classify digital evidence artefacts in a way that assists selection of the potentially relevant evidence before processing any material. In so doing we wish to avoid generating bulk data and instead start viewing digital evidence from an investigative perspective – not a technological one.

This paper details the continuing development of an ontology for this purpose – the Digital Evidence Semantic Ontology (DESO). This provides an index to a repository of known digital evidence artefacts which are classified according to the location that they are found and the information they represent. Further, this paper also demonstrates how DESO can be applied to criminal investigations to assist lines of enquiry.
Original languageEnglish
Pages (from-to)72-82
JournalDigital Investigation
Volume15
Early online date3 Nov 2015
DOIs
Publication statusPublished - 3 Nov 2015

Keywords

  • Big data; Cyber forensics; Digital evidence; Ontology; Criminal investigation; Digital investigation; Artefacts

Fingerprint

Dive into the research topics of 'DESO: Addressing volume and variety in large-scale criminal cases'. Together they form a unique fingerprint.

Cite this