专利内容由知识产权出版社提供
专利名称:Digital forensic analysis using empirical
privilege profiling (EPP) for filteringcollected data
发明人:Frank Adelstein,Carla Marceau申请号:US12469558申请日:20090520公开号:US08458805B2公开日:20130604
专利附图:
摘要:A forensic device allows a user to remotely interrogate a target computingdevice in order to collect and analyze computer evidence that may be stored on the
target computing device. The forensic device acquires the computer evidence from thetarget computing device and filters the computer evidence using an application-specificsystem-level privilege profile that describes the aggregate exercise of system-levelprivileges by a plurality of software application instances executing throughout anenterprise. The forensic device presents a user interface through which the remote userviews the filtered computer evidence acquired from the target computing device. In thismanner, forensic device allows the user to filter the collected computer evidence to datathat is likely to have forensic relevance.
申请人:Frank Adelstein,Carla Marceau
地址:Ithaca NY US,Ithaca NY US
国籍:US,US
代理机构:Shumaker & Sieffert, P.A.
更多信息请下载全文后查看