Показать сокращенную информацию

dc.contributor.authorMeiramkhan, Е.A.
dc.date.accessioned2025-06-05T07:04:15Z
dc.date.available2025-06-05T07:04:15Z
dc.date.issued2025-04-16
dc.identifier.isbn978-601-385-052-8
dc.identifier.urihttp://repository.enu.kz/handle/enu/24038
dc.description.abstractKAPE (Kroll Artifact Parser and Extractor) is a digital forensics tool developed by Eric Zimmerman to streamline the rapid collection and processing of forensic artifacts in Windows environments. Unlike traditional forensic tools, KAPE is highly customizable, allowing investigators to define what data is collected, how it is gathered, and whether additional processing is applied. KAPE overcomes common triage limitations, such as metadata loss, locked file restrictions, and rigid data collection parameters. By acting as a high-speed forensic engine, it enables investigators to acquire actionable intelligence in under 90 minutes. This paper examines KAPE’s key functionalities, integration with other forensic tools, and its role in enhancing the efficiency of digital forensic investigations.ru
dc.language.isoenru
dc.publisherL.N. Gumilyov Eurasian National Universityru
dc.subjectDigital forensicsru
dc.subjectKAPEru
dc.subjecttriage imagingru
dc.subjectartifact collectionru
dc.subjectwindows forensic analysisru
dc.subjectincident responseru
dc.subjectvolume shadow copiesru
dc.subjectchain of custodyru
dc.subjectforensic automationru
dc.subjectdata integrityru
dc.titleMETHODS OF INTEGRATING KAPE WITH OTHER DIGITAL FORENSICS TOOLSru
dc.typeArticleru


Файлы в этом документе

Thumbnail

Данный элемент включен в следующие коллекции

Показать сокращенную информацию