Jump to content

Digital Forensics XML

From Wikipedia, the free encyclopedia
This is an old revision of this page, as edited by A. B. (talk | contribs) at 00:50, 20 December 2023 (dozens of Google Scholar results - likely notable. Should be discussed before any deletion). The present address (URL) is a permanent link to this revision, which may differ significantly from the current revision.

Digital Forensics XML (DFXML) is an XML language used to automate digital forensics processing. DFXML contains information about both the results of forensic processing and the tools used to perform the processing (provenance). Currently there is no Digital Forensics XML standard and there is no fixed schema. There is a draft schema available from NIST.

References

  1. Simson Garfinkel, Digital Forensics XML and the DFXML toolset, Digital Investigation, 2012.
  2. Simson L. Garfinkel, Automating Disk Forensic Processing with SleuthKit, XML and Python, Systematic Approaches to Digital Forensics Engineering (IEEE/SADFE 2009), Oakland, California. (Acceptance rate: 32%, 7/22)

See also