activity
20172024
most citedExploring the Potential of Large Language Models for Improving Digital Forensic Investigation Efficiency

27 citations · 39 across the 9 of their papers we have counts for

collaborators
Showing cs.CRShow all

8 papers · 1 filter

cs.CR2024★ 2 cited

Strategies and Challenges of Timestamp Tampering for Improved Digital Forensic Event Reconstruction (extended version)

Céline Vanini, Jan Gruber, Christopher Hargreaves +3

Timestamps play a pivotal role in digital forensic event reconstruction, but due to their non-essential nature, tampering or manipulation of timestamps is possible by users in mult…

cs.CR2024★ 1 cited

Evaluating tamper resistance of digital forensic artifacts during event reconstruction

Céline Vanini, Chris Hargreaves, Frank Breitinger

Event reconstruction is a fundamental part of the digital forensic process, helping to answer key questions like who, what, when, and how. A common way of accomplishing that is to…

cs.CR2024★ 27 cited

Exploring the Potential of Large Language Models for Improving Digital Forensic Investigation Efficiency

Akila Wickramasekara, Frank Breitinger, Mark Scanlon

The ever-increasing workload of digital forensic labs raises concerns about law enforcement's ability to conduct both cyber-related and non-cyber-related investigations promptly. C…

cs.CR2023

ChatGPT, Llama, can you write my report? An experiment on assisted digital forensics reports written using (Local) Large Language Models

Gaëtan Michelet, Frank Breitinger

Generative AIs, especially Large Language Models (LLMs) such as ChatGPT or Llama, have advanced significantly, positioning them as valuable tools for digital forensics. While initi…

cs.CR2023★ 2 cited

DFRWS EU 10-Year Review and Future Directions in Digital Forensic Research

Frank Breitinger, Jan-Niclas Hilgert, Christopher Hargreaves +3

Conducting a systematic literature review and comprehensive analysis, this paper surveys all 135 peer-reviewed articles published at the Digital Forensics Research Conference Europ…

cs.CR2023★ 1 cited

As if Time Had Stopped -- Checking Memory Dumps for Quasi-Instantaneous Consistency

Jenny Ottmann, Üsame Cengiz, Frank Breitinger +1

Memory dumps that are acquired while the system is running often contain inconsistencies like page smearing which hamper the analysis. One possibility to avoid inconsistencies is t…