{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,4,22]],"date-time":"2025-04-22T11:26:50Z","timestamp":1745321210557,"version":"3.37.3"},"publisher-location":"Cham","reference-count":25,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783030054861"},{"type":"electronic","value":"9783030054878"}],"license":[{"start":{"date-parts":[[2018,12,30]],"date-time":"2018-12-30T00:00:00Z","timestamp":1546128000000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2019]]},"DOI":"10.1007\/978-3-030-05487-8_2","type":"book-chapter","created":{"date-parts":[[2018,12,29]],"date-time":"2018-12-29T13:11:18Z","timestamp":1546089078000},"page":"23-42","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":2,"title":["fishy - A Framework for Implementing Filesystem-Based Data Hiding Techniques"],"prefix":"10.1007","author":[{"given":"Thomas","family":"G\u00f6bel","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Harald","family":"Baier","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2018,12,30]]},"reference":[{"key":"2_CR1","doi-asserted-by":"publisher","first-page":"66","DOI":"10.1016\/j.diin.2016.04.006","volume":"18","author":"K Conlan","year":"2016","unstructured":"Conlan, K., Baggili, I., Breitinger, F.: Anti-forensics: Furthering digital forensic science through a new extended, granular taxonomy. Digit. Investig. 18, 66\u201375 (2016)","journal-title":"Digit. Investig."},{"key":"2_CR2","unstructured":"Rogers, M.: Anti-Forensics, presented at Lockheed Martin, San Diego, 15 September 2005. www.researchgate.net\/profile\/Marcus_Rogers\/publication\/268290676_Anti-Forensics_Anti-Forensics\/links\/575969a908aec91374a3656c.pdf . Accessed 12 May 2018"},{"key":"2_CR3","doi-asserted-by":"publisher","first-page":"44","DOI":"10.1016\/j.diin.2006.06.005","volume":"3","author":"R Harris","year":"2006","unstructured":"Harris, R.: Arriving at an anti-forensics consensus: Examining how to define and control the anti-forensics problem. Digit. Investig. 3, 44\u201349 (2006)","journal-title":"Digit. Investig."},{"key":"2_CR4","doi-asserted-by":"crossref","unstructured":"Wundram, M., Freiling, F.C., Moch, C.: Anti-forensics: The next step in digital forensics tool testing. IT Security Incident Management and IT Forensics (IMF), pp. 83\u201397 (2013)","DOI":"10.1109\/IMF.2013.17"},{"issue":"3","key":"2_CR5","doi-asserted-by":"publisher","first-page":"80","DOI":"10.4018\/jdcf.2009070105","volume":"1","author":"CK Ridder","year":"2009","unstructured":"Ridder, C.K.: Evidentiary implications of potential security weaknesses in forensic software. Int. J. Digit. Crime Forensics (IJDCF) 1(3), 80\u201391 (2009)","journal-title":"Int. J. Digit. Crime Forensics (IJDCF)"},{"key":"2_CR6","unstructured":"Newsham, T., Palmer, C., Stamos, A., Burns, J.: Breaking forensics software: weaknesses in critical evidence collection. In: Proceedings of the 2007 Black Hat Conference. Citeseer (2007)"},{"key":"2_CR7","unstructured":"Kailus, A.V., Hecht, C., G\u00f6bel, T., Liebler, L.: fishy - Ein Framework zur Umsetzung von Verstecktechniken in Dateisystemen. D.A.CH Security 2018, syssec Verlag (2018)"},{"key":"2_CR8","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"73","DOI":"10.1007\/3-540-49380-8_6","volume-title":"Information Hiding","author":"R Anderson","year":"1998","unstructured":"Anderson, R., Needham, R., Shamir, A.: The steganographic file system. In: Aucsmith, D. (ed.) IH 1998. LNCS, vol. 1525, pp. 73\u201382. Springer, Heidelberg (1998). https:\/\/doi.org\/10.1007\/3-540-49380-8_6"},{"key":"2_CR9","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"463","DOI":"10.1007\/10719724_32","volume-title":"Information Hiding","author":"AD McDonald","year":"2000","unstructured":"McDonald, A.D., Kuhn, M.G.: StegFS: a steganographic file system for Linux. In: Pfitzmann, A. (ed.) IH 1999. LNCS, vol. 1768, pp. 463\u2013477. Springer, Heidelberg (2000). https:\/\/doi.org\/10.1007\/10719724_32"},{"key":"2_CR10","series-title":"IFIP Advances in Information and Communication","doi-asserted-by":"publisher","first-page":"79","DOI":"10.1007\/0-387-36891-4_7","volume-title":"Advances in Digital Forensics II","author":"S Piper","year":"2006","unstructured":"Piper, S., Davis, M., Shenoi, S.: Countering hostile forensic techniques. In: Olivier, M.S., Shenoi, S. (eds.) Advances in Digital Forensics II. IFIP AICT, vol. 222, pp. 79\u201390. Springer, Boston, MA (2006). https:\/\/doi.org\/10.1007\/0-387-36891-4_7"},{"key":"2_CR11","series-title":"IFIP Advances in Information and Communication Technology","doi-asserted-by":"publisher","first-page":"87","DOI":"10.1007\/978-3-319-99277-8_6","volume-title":"Advances in Digital Forensics XIV","author":"Thomas G\u00f6bel","year":"2018","unstructured":"G\u00f6bel, Thomas, Baier, Harald: Anti-forensic capacity and detection rating of hidden data in the Ext4 filesystem. In: Peterson, G., Shenoi, S. (eds.) Advances in Digital Forensics XIV. IFIP AICT, vol. 532, pp. 87\u2013110. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-319-99277-8_6"},{"key":"2_CR12","doi-asserted-by":"publisher","first-page":"76","DOI":"10.1016\/j.diin.2016.04.010","volume":"18","author":"S Neuner","year":"2016","unstructured":"Neuner, S., Voyiatzis, A.G., Schmiedecker, M., Brunthaler, S., Katzenbeisser, S., Weippl, E.R.: Time is on my side: steganography in filesystem metadata. Digit. Investig. 18, 76\u201386 (2016)","journal-title":"Digit. Investig."},{"key":"2_CR13","doi-asserted-by":"publisher","first-page":"118","DOI":"10.1016\/j.diin.2012.05.010","volume":"9","author":"KD Fairbanks","year":"2012","unstructured":"Fairbanks, K.D.: An analysis of Ext4 for digital forensics. Digit. Investig. 9, 118\u2013130 (2012)","journal-title":"Digit. Investig."},{"key":"2_CR14","unstructured":"Eckstein, K., Jahnke, M.: Data hiding in journaling file systems. In: Proceedings of the 5th Annual Digital Forensic Research Workshop (DFRWS) (2005)"},{"key":"2_CR15","series-title":"IFIP \u2014 The International Federation for Information Processing","doi-asserted-by":"publisher","first-page":"245","DOI":"10.1007\/0-387-31163-7_20","volume-title":"Advances in Digital Forensics","author":"S Piper","year":"2006","unstructured":"Piper, S., Davis, M., Manes, G., Shenoi, S.: Detecting Hidden Data in Ext2\/Ext3 File Systems. In: Pollitt, M., Shenoi, S. (eds.) Advances in Digital Forensics. ITIFIP, vol. 194, pp. 245\u2013256. Springer, Boston, MA (2006). https:\/\/doi.org\/10.1007\/0-387-31163-7_20"},{"key":"2_CR16","unstructured":"Grugq, T.: The art of defiling: defeating forensic analysis. In: Blackhat Briefings, Las Vegas, NV (2005)"},{"key":"2_CR17","doi-asserted-by":"publisher","first-page":"211","DOI":"10.1016\/j.diin.2006.10.005","volume":"3","author":"E Huebner","year":"2006","unstructured":"Huebner, E., Bem, D., Wee, C.K.: Data hiding in the NTFS file system. Digit. Investig. 3, 211\u2013226 (2006)","journal-title":"Digit. Investig."},{"key":"2_CR18","volume-title":"Forensic and Anti-Forensic on modern Computer Systems","author":"A Krenhuber","year":"2007","unstructured":"Krenhuber, A., Niederschick, A.: Forensic and Anti-Forensic on modern Computer Systems. Johannes Kepler Universitaet, Linz (2007)"},{"key":"2_CR19","first-page":"1","volume-title":"Advances in Computers","author":"Hal Berghel","year":"2008","unstructured":"Berghel, H., Hoelzer, D., Sthultz, M.: Data hiding tactics for windows and unix file systems. In: Advances in Computers, vol. 74, pp. 1\u201317 (2008)"},{"key":"2_CR20","unstructured":"Thompson, I., Monroe, M.: FragFS: an advanced data hiding technique. In: BlackHat Federal, January 2018. http:\/\/www.blackhat.com\/presentations\/bh-federal-06\/BH-Fed-06-Thompson\/BH-Fed-06-Thompson-up.pdf . Accessed 12 May 2018"},{"key":"2_CR21","unstructured":"Forster, J.C., Liu, V.: catch me, if you can... In: BlackHat Briefings (2005). http:\/\/www.blackhat.com\/presentations\/bh-usa-05\/bh-us-05-foster-liu-update.pdf . Accessed 12 May 2018"},{"key":"2_CR22","unstructured":"Garfinkel, S.: Anti-forensics: techniques, detection and countermeasures. In: 2nd International Conference on i-Warfare and Security, pp. 77\u201384 (2007)"},{"key":"2_CR23","doi-asserted-by":"publisher","first-page":"111","DOI":"10.1016\/j.diin.2018.01.014","volume":"24","author":"T G\u00f6bel","year":"2018","unstructured":"G\u00f6bel, T., Baier, H.: Anti-forensics in ext4: On secrecy and usability of timestamp-based data hiding. Digit. Investig. 24, 111\u2013120 (2018)","journal-title":"Digit. Investig."},{"key":"2_CR24","volume-title":"File System Forensic Analysis","author":"B Carrier","year":"2005","unstructured":"Carrier, B.: File System Forensic Analysis. Addison-Wesley Professional, Boston (2005)"},{"key":"2_CR25","unstructured":"Wong, D.J.: Ext4 Disk Layout, Ext4 Wiki (2016). https:\/\/ext4.wiki.kernel.org\/index.php\/Ext4_Disk_Layout . Accessed 12 May 2018"}],"container-title":["Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","Digital Forensics and Cyber Crime"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-05487-8_2","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,11,13]],"date-time":"2019-11-13T02:39:07Z","timestamp":1573612747000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-030-05487-8_2"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,12,30]]},"ISBN":["9783030054861","9783030054878"],"references-count":25,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-05487-8_2","relation":{},"ISSN":["1867-8211","1867-822X"],"issn-type":[{"type":"print","value":"1867-8211"},{"type":"electronic","value":"1867-822X"}],"subject":[],"published":{"date-parts":[[2018,12,30]]},"assertion":[{"value":"ICDF2C","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Digital Forensics and Cyber Crime","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"New Orleans, LA","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"USA","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2018","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"10 September 2018","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"12 September 2018","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"10","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"icdf2c2018","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/d-forensics.org\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}