Al-Dhaqm Arafat, Razak Shukor, Othman Siti Hajar, Ngadi Asri, Ahmed Mohammed Nazir, Ali Mohammed Abdulalem
Department of Computer Science, Faculty of Computing, Universiti Teknologi Malaysia, Skudai, Johor, Malaysia.
Department of Computer Science, Aden Community College, Aden, Yemen.
PLoS One. 2017 Feb 1;12(2):e0170793. doi: 10.1371/journal.pone.0170793. eCollection 2017.
Database Forensics (DBF) is a widespread area of knowledge. It has many complex features and is well known amongst database investigators and practitioners. Several models and frameworks have been created specifically to allow knowledge-sharing and effective DBF activities. However, these are often narrow in focus and address specified database incident types. We have analysed 60 such models in an attempt to uncover how numerous DBF activities are really public even when the actions vary. We then generate a unified abstract view of DBF in the form of a metamodel. We identified, extracted, and proposed a common concept and reconciled concept definitions to propose a metamodel. We have applied a metamodelling process to guarantee that this metamodel is comprehensive and consistent.
数据库取证(DBF)是一个广泛的知识领域。它具有许多复杂的特性,在数据库调查人员和从业者中广为人知。已经专门创建了几个模型和框架,以实现知识共享和有效的DBF活动。然而,这些模型和框架往往关注范围狭窄,只处理特定类型的数据库事件。我们分析了60个这样的模型,试图揭示即使行动各不相同,众多DBF活动实际上有多少是公开的。然后,我们以元模型的形式生成了DBF的统一抽象视图。我们识别、提取并提出了一个通用概念,并协调了概念定义,以提出一个元模型。我们应用了一个元建模过程,以确保这个元模型是全面且一致的。