{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,11]],"date-time":"2025-09-11T12:07:35Z","timestamp":1757592455846,"version":"3.40.3"},"publisher-location":"Berlin, Heidelberg","reference-count":20,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783540732150"},{"type":"electronic","value":"9783540732167"}],"license":[{"start":{"date-parts":[[2007,1,1]],"date-time":"2007-01-01T00:00:00Z","timestamp":1167609600000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2007]]},"DOI":"10.1007\/978-3-540-73216-7_41","type":"book-chapter","created":{"date-parts":[[2007,8,23]],"date-time":"2007-08-23T22:11:07Z","timestamp":1187907067000},"page":"364-372","source":"Crossref","is-referenced-by-count":3,"title":["Embedding Hercule Poirot in Networks: Addressing Inefficiencies in Digital Forensic Investigations"],"prefix":"10.1007","author":[{"given":"Barbara","family":"Endicott-Popovsky","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Deborah A.","family":"Frincke","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"41_CR1","unstructured":"Endicott-Popovsky, B.E., Ryan, D., Frincke, D.: The New Zealand Hacker Case: A Post Mortem. In: Proceedings Safety and Security in a Networked World: Balancing Cyber-Rights & Responsibilities, Oxford Internet Institute, Oxford, England (September 2005), Retrieved from the World Wide Web: http:\/\/www.oii.ox.ac.uk\/research\/cybersafety\/?view=papers"},{"key":"41_CR2","unstructured":"Tan, J.: Forensic Readiness, @Stake, Cambridge, MA (2001)"},{"key":"41_CR3","unstructured":"Dittrich, D., Endicott-Popovsky, B.E.: INFO498 Introduction to Computer Security Incident Response, University of Washington, Seattle, WA (Fall, 2003)"},{"key":"41_CR4","unstructured":"Rowlinson, R.: Ten Steps to Forensic Readiness. International Journal of Digital Evidence\u00a023(3) (Winter 2004)"},{"key":"41_CR5","unstructured":"Endicott-Popovsky, B.E., Chee, B., Frincke, D.: Role of Calibration as Part of Establishing Foundation for Expert Testimony. In: Proceedings 3rd Annual IFIP WG 11. Orlando, FL (January 2007)"},{"key":"41_CR6","unstructured":"Lawson, M, Lawson R.: Expert Witness Testimony. Global CompuSearch, LLC, Spokane, WA (2000-2003)"},{"key":"41_CR7","unstructured":"CSI\/FBI: CSI\/FBI Computer Crime and Security Survey, Computer Security Institute, San Francisco, CA (2005)"},{"key":"41_CR8","unstructured":"Bailey, K.: Trouble in Cyberspace: Why this Conference is Important, NWSec, Seattle, WA (February 2007), Retrieved from the World Wide Web http:\/\/students.washington.edu\/greyhat\/mainsec.html"},{"key":"41_CR9","unstructured":"Gates, P.: Seminar in Data Security, Seattle, WA (March 2005)"},{"key":"41_CR10","unstructured":"NIST: Computer Forensics Tool Testing (CFTT) Project, Retrieved from the World Wide Web: http:\/\/www.cftt.nist.gov\/"},{"key":"41_CR11","unstructured":"Endicott-Popovsky, B.E., Frincke, D.: Adding the Fourth \u2019R\u2019: A Systems Approach to Solving the Hacker\u2019s Arms Race. In: Hawaii International Conference on System Sciences (HICSS) 39 Symposium: Skilled Human-intelligent Agent Performance: Measurement, Application and Symbiosis, Kauai, HI, (January 2006). Retrieved from the World Wide Web: http:\/\/www.itl.nist.gov\/iaui\/vvrg\/hicss39\/4_r_s_rev_3_HICSS_2006.doc"},{"key":"41_CR12","unstructured":"Ellison, R.J., Fisher, D.A., Linger, R.C., Lipson, H.F., Longstaff, T.A., Mead, N.R.: Survivable Network Systems: An Emerging Discipline. CMU\/SEI 97-TR-013, Software Engineering Institute, Carnegie-Mellon University, Pittsburgh, PA (May 1999)"},{"key":"41_CR13","doi-asserted-by":"crossref","unstructured":"Mocas, S.: Building Theoretical Underpinnings for Digital Forensics Research. Compsec Online: Digital Investigations\u00a01(1) (2003)","DOI":"10.1016\/j.diin.2003.12.004"},{"key":"41_CR14","doi-asserted-by":"crossref","unstructured":"Endicott-Popovsky, B., Frincke, D.: Embedding Forensic Capabilities into Networks: Addressing Inefficiencies in Digital Forensics Investigations. In: Proceedings Seventh IEEE Systems, Man and Cybernetics Information Assurance Workshop, pp.133\u2013139. United States Military Academy, West Point, NY (June 2006)","DOI":"10.1109\/IAW.2006.1652087"},{"key":"41_CR15","doi-asserted-by":"crossref","unstructured":"Grance, T., Hash, J., Stevens, M.: Security Considerations in the Information System Development Life Cycle. U.S. Department of Commerce, NIST Special Publication, pp. 800\u2013864 (2004)","DOI":"10.6028\/NIST.SP.800-64r1"},{"key":"41_CR16","unstructured":"Bailey, K., Winn, J.: Personal Interviews (March 2006)"},{"key":"41_CR17","unstructured":"Yasinsac, A., Manzano, Y.: Policies to Enhance Computer and Network Forensics. In: Proceedings 2001 IEEE Workshop on Information Assurance and Security, United States Military Academy, West Point, NY (June 2001)"},{"issue":"2","key":"41_CR18","doi-asserted-by":"publisher","first-page":"55","DOI":"10.1016\/S1363-4127(03)00207-3","volume":"8","author":"J. Wolfe-Wilson","year":"2003","unstructured":"Wolfe-Wilson, J., Wolfe, H.B.: Management Strategies for Implementing Forensic Security Measures (electronic version). Information Security Technical Report\u00a08(2), 55\u201364 (2003)","journal-title":"Information Security Technical Report"},{"key":"41_CR19","unstructured":"Carrier, B., Spafford, E.: Getting Physical with the Digital Investigation Process [electronic version]. International Journal of Digital Evidence 2(2) (Fall 2003)"},{"key":"41_CR20","doi-asserted-by":"crossref","unstructured":"Endicott-Popovsky, B.E., Fluckiger, J.D., Frincke, D.A.: Establishing Tap Reliability in Expert Witness Testimony: Using Scenarios to Identify Calibration Need. In: Proceedings 2nd International Workshop on Systematic Approaches to Digital Forensic Engineering, Seattle, WA, (April 2007)","DOI":"10.1109\/SADFE.2007.10"}],"container-title":["Lecture Notes in Computer Science","Foundations of Augmented Cognition"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-540-73216-7_41","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,1,20]],"date-time":"2025-01-20T16:34:34Z","timestamp":1737390874000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-540-73216-7_41"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2007]]},"ISBN":["9783540732150","9783540732167"],"references-count":20,"URL":"https:\/\/doi.org\/10.1007\/978-3-540-73216-7_41","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2007]]}}}