Show simple item record

dc.contributor.authorNisioti, Antonia
dc.contributor.authorLoukas, George
dc.contributor.authorMylonas, Alexios
dc.contributor.authorPanaousis, Emmanouil
dc.date.accessioned2023-01-13T12:00:02Z
dc.date.available2023-01-13T12:00:02Z
dc.date.issued2023-03-01
dc.identifier.citationNisioti , A , Loukas , G , Mylonas , A & Panaousis , E 2023 , ' Forensics for multi-stage cyber incidents : Survey and future directions ' , Forensic Science International: Digital Investigation , vol. 44 , 301480 . https://doi.org/10.1016/j.fsidi.2022.301480
dc.identifier.issn2666-2825
dc.identifier.urihttp://hdl.handle.net/2299/26000
dc.description© 2022 The Authors. Published by Elsevier Ltd. This is an open access article under the CC BY-NC-ND license (http://creativecommons.org/licenses/by-nc-nd/4.0/).
dc.description.abstractThe increase in the complexity and sophistication of multi-stage cyber attacks, such as advanced persistent threats, paired with the large volume of data produced by modern systems and networks, have made forensic investigations more demanding in knowledge and resources. Thus, it is essential that cyber forensic investigators are supported to operate more efficiently, in terms of resources and evidence recovery, and cope with a wide range of cyber incidents. This paper presents a comprehensive survey of 49 works that aim to support cyber forensic investigations of modern multi-stage cyber incidents and highlights the need for decision support systems on the field. The works reviewed are compared using 11 criteria, such as their evaluation method, how they optimise the forensic process, or what stage of investigation they study. We also classify the surveyed papers using 8 categories that represent the overall aim of the proposed cyber investigation method or tool. We identify and discuss open issues, arising from this extensive survey, such as the need for realistic evaluation, as well as realistic and representative modelling to increase applicability and performance. Finally, we provide directions for future research on improving the state-of-the-art of cyber forensics.en
dc.format.extent16
dc.format.extent1930937
dc.language.isoeng
dc.relation.ispartofForensic Science International: Digital Investigation
dc.subjectAdvanced persistent threats
dc.subjectAnti-forensics
dc.subjectCyber forensics
dc.subjectDigital forensics
dc.subjectMulti-stage attacks
dc.subjectReview
dc.subjectSurvey
dc.subjectPathology and Forensic Medicine
dc.subjectInformation Systems
dc.subjectComputer Science Applications
dc.subjectMedical Laboratory Technology
dc.subjectLaw
dc.titleForensics for multi-stage cyber incidents : Survey and future directionsen
dc.contributor.institutionSchool of Physics, Engineering & Computer Science
dc.contributor.institutionDepartment of Pharmacy, Pharmacology and Postgraduate Medicine
dc.description.statusPeer reviewed
dc.identifier.urlhttp://www.scopus.com/inward/record.url?scp=85145262956&partnerID=8YFLogxK
rioxxterms.versionofrecord10.1016/j.fsidi.2022.301480
rioxxterms.typeOther
herts.preservation.rarelyaccessedtrue


Files in this item

Thumbnail

This item appears in the following Collection(s)

Show simple item record