Jump to content

Digital Forensics XML

From Wikipedia, the free encyclopedia
This is an old revision of this page, as edited by MenoBot (talk | contribs) at 15:58, 17 June 2013 (Bot: Auto-tagging, added uncategorised, deadend tags). The present address (URL) is a permanent link to this revision, which may differ significantly from the current revision.

Digital Forensics XML (DFXML) is an XML language used to automated digital forensics processing. DFXML contains information about both the results of forensic processing and the tools used to perform the processing (provenance). Currently there is no Digital Forensics XML standard and there is no fixed schema. There is a draft schema available from NIST.

References

  1. Garfinkel, S. Digital Forensics XML and the DFXML toolset, Digital Investigation, 2012.
  2. Garfinkel, Simson., Automating Disk Forensic Processing with SleuthKit, XML and Python, Systematic Approaches to Digital Forensics Engineering (IEEE/SADFE 2009), Oakland, California. (Acceptance rate: 32%, 7/22)

See also