Detailed Information

Cited 0 time in webofscience Cited 0 time in scopus
Metadata Downloads

Forensic investigation framework for the document store NoSQL DBMS: MongoDB as a case study

Full metadata record
DC Field Value Language
dc.contributor.authorYoon, Jongseong-
dc.contributor.authorJeong, Doowon-
dc.contributor.authorKang, Chul-hoon-
dc.contributor.authorLee, Sangjin-
dc.date.accessioned2021-09-03T23:27:47Z-
dc.date.available2021-09-03T23:27:47Z-
dc.date.created2021-06-18-
dc.date.issued2016-06-
dc.identifier.issn1742-2876-
dc.identifier.urihttps://scholar.korea.ac.kr/handle/2021.sw.korea/88534-
dc.description.abstractThe NoSQL DBMS provides an efficient means of storing and accessing big data because its servers are more easily horizontally scalable and replicable than relational DBMSs. Its data model lacks a fixed schema, so that users can easily dynamically change the data model of applications. These characteristics of the NoSQL DBMS mean that it is increasingly used in real-time analysis, web services such as SNS, mobile apps and the storage of machine generated data such as logs and IoT (Internet of Things) data. Although the increased usage of the NoSQL DBMS increases the possibility of it becoming a target of crime, there are few papers about forensic investigation of NoSQL DBMS. In this paper, we propose a forensic investigation framework for the document store NoSQL DBMS. It is difficult to cover all of the NoSQL DBMS, as 'NoSQL' includes several distinct architectures; our forensic investigation framework, however, is focused on the document store NoSQL DBMS. In order to conduct an evaluative case study, we need to apply it to MongoDB, which is, a widely used document store NoSQL DBMS. For this case study, a crime scenario is created in an experimental environment, and then we propose in detail a forensic procedure and technical methods for MongoDB. We suggested many substantial technical investigation methods for MongoDB, including identifying real servers storing evidences in a distributed environment and transaction reconstruction method, using log analysis and recovering deleted data from the MongoDB data file structure. (C) 2016 Elsevier Ltd. All rights reserved.-
dc.languageEnglish-
dc.language.isoen-
dc.publisherELSEVIER SCI LTD-
dc.subjectSQL-
dc.titleForensic investigation framework for the document store NoSQL DBMS: MongoDB as a case study-
dc.typeArticle-
dc.contributor.affiliatedAuthorLee, Sangjin-
dc.identifier.doi10.1016/j.diin.2016.03.003-
dc.identifier.scopusid2-s2.0-84965161438-
dc.identifier.wosid000377992200006-
dc.identifier.bibliographicCitationDIGITAL INVESTIGATION, v.17, pp.53 - 65-
dc.relation.isPartOfDIGITAL INVESTIGATION-
dc.citation.titleDIGITAL INVESTIGATION-
dc.citation.volume17-
dc.citation.startPage53-
dc.citation.endPage65-
dc.type.rimsART-
dc.type.docTypeArticle-
dc.description.journalClass1-
dc.description.journalRegisteredClassscie-
dc.description.journalRegisteredClassscopus-
dc.relation.journalResearchAreaComputer Science-
dc.relation.journalWebOfScienceCategoryComputer Science, Information Systems-
dc.relation.journalWebOfScienceCategoryComputer Science, Interdisciplinary Applications-
dc.subject.keywordPlusSQL-
dc.subject.keywordAuthorDatabase forensics-
dc.subject.keywordAuthorDigital forensics-
dc.subject.keywordAuthorNoSQL DBMS-
dc.subject.keywordAuthorDocument store NoSQL DBMS-
dc.subject.keywordAuthorMongoDB-
Files in This Item
There are no files associated with this item.
Appears in
Collections
School of Cyber Security > Department of Information Security > 1. Journal Articles

qrcode

Items in ScholarWorks are protected by copyright, with all rights reserved, unless otherwise indicated.

Related Researcher

Researcher LEE, SANG JIN photo

LEE, SANG JIN
정보보호학과
Read more

Altmetrics

Total Views & Downloads

BROWSE