Cargando…

Dataset for forensic analysis of B-tree file system

Since B-tree file system (Btrfs) is set to become de facto standard file system on Linux (and Linux based) operating systems, Btrfs dataset for forensic analysis is of great interest and immense value to forensic community. This article presents a novel dataset for forensic analysis of Btrfs that wa...

Descripción completa

Detalles Bibliográficos
Autores principales: Wani, Mohamad Ahtisham, Bhat, Wasim Ahmad
Formato: Online Artículo Texto
Lenguaje:English
Publicado: Elsevier 2018
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC5998747/
https://www.ncbi.nlm.nih.gov/pubmed/29904709
http://dx.doi.org/10.1016/j.dib.2018.04.100
_version_ 1783331289647022080
author Wani, Mohamad Ahtisham
Bhat, Wasim Ahmad
author_facet Wani, Mohamad Ahtisham
Bhat, Wasim Ahmad
author_sort Wani, Mohamad Ahtisham
collection PubMed
description Since B-tree file system (Btrfs) is set to become de facto standard file system on Linux (and Linux based) operating systems, Btrfs dataset for forensic analysis is of great interest and immense value to forensic community. This article presents a novel dataset for forensic analysis of Btrfs that was collected using a proposed data-recovery procedure. The dataset identifies various generalized and common file system layouts and operations, specific node-balancing mechanisms triggered, logical addresses of various data structures, on-disk records, recovered-data as directory entries and extent data from leaf and internal nodes, and percentage of data recovered.
format Online
Article
Text
id pubmed-5998747
institution National Center for Biotechnology Information
language English
publishDate 2018
publisher Elsevier
record_format MEDLINE/PubMed
spelling pubmed-59987472018-06-14 Dataset for forensic analysis of B-tree file system Wani, Mohamad Ahtisham Bhat, Wasim Ahmad Data Brief Computer Sciences    Since B-tree file system (Btrfs) is set to become de facto standard file system on Linux (and Linux based) operating systems, Btrfs dataset for forensic analysis is of great interest and immense value to forensic community. This article presents a novel dataset for forensic analysis of Btrfs that was collected using a proposed data-recovery procedure. The dataset identifies various generalized and common file system layouts and operations, specific node-balancing mechanisms triggered, logical addresses of various data structures, on-disk records, recovered-data as directory entries and extent data from leaf and internal nodes, and percentage of data recovered. Elsevier 2018-05-03 /pmc/articles/PMC5998747/ /pubmed/29904709 http://dx.doi.org/10.1016/j.dib.2018.04.100 Text en © 2018 The Authors http://creativecommons.org/licenses/by/4.0/ This is an open access article under the CC BY license (http://creativecommons.org/licenses/by/4.0/).
spellingShingle Computer Sciences   
Wani, Mohamad Ahtisham
Bhat, Wasim Ahmad
Dataset for forensic analysis of B-tree file system
title Dataset for forensic analysis of B-tree file system
title_full Dataset for forensic analysis of B-tree file system
title_fullStr Dataset for forensic analysis of B-tree file system
title_full_unstemmed Dataset for forensic analysis of B-tree file system
title_short Dataset for forensic analysis of B-tree file system
title_sort dataset for forensic analysis of b-tree file system
topic Computer Sciences   
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC5998747/
https://www.ncbi.nlm.nih.gov/pubmed/29904709
http://dx.doi.org/10.1016/j.dib.2018.04.100
work_keys_str_mv AT wanimohamadahtisham datasetforforensicanalysisofbtreefilesystem
AT bhatwasimahmad datasetforforensicanalysisofbtreefilesystem