{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,2,21]],"date-time":"2025-02-21T13:26:08Z","timestamp":1740144368858,"version":"3.37.3"},"reference-count":68,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"10","license":[{"start":{"date-parts":[[2019,10,1]],"date-time":"2019-10-01T00:00:00Z","timestamp":1569888000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2019,10,1]],"date-time":"2019-10-01T00:00:00Z","timestamp":1569888000000},"content-version":"am","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2019,10,1]],"date-time":"2019-10-01T00:00:00Z","timestamp":1569888000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2019,10,1]],"date-time":"2019-10-01T00:00:00Z","timestamp":1569888000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","award":["DGE-1723707","DGE-1623713","CNS-1745894"],"award-info":[{"award-number":["DGE-1723707","DGE-1623713","CNS-1745894"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/100000104","name":"NASA","doi-asserted-by":"crossref","award":["NNX15AJ20H"],"award-info":[{"award-number":["NNX15AJ20H"]}],"id":[{"id":"10.13039\/100000104","id-type":"DOI","asserted-by":"crossref"}]},{"name":"Lee Kong Chian Fellowship at Singapore Management University"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2019,10]]},"DOI":"10.1109\/tifs.2019.2898841","type":"journal-article","created":{"date-parts":[[2019,2,11]],"date-time":"2019-02-11T19:26:11Z","timestamp":1549913171000},"page":"2749-2764","source":"Crossref","is-referenced-by-count":12,"title":["$LiveForen$ : Ensuring Live Forensic Integrity in the Cloud"],"prefix":"10.1109","volume":"14","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-6011-1998","authenticated-orcid":false,"given":"Anyi","family":"Liu","sequence":"first","affiliation":[{"name":"Department of Computer Science and Engineering, Oakland University, Rochester, MI, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Huirong","family":"Fu","sequence":"additional","affiliation":[{"name":"Department of Computer Science and Engineering, Oakland University, Rochester, MI, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4095-4506","authenticated-orcid":false,"given":"Yuan","family":"Hong","sequence":"additional","affiliation":[{"name":"Department of Computer Science, Illinois Institute of Technology, Chicago, IL, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jigang","family":"Liu","sequence":"additional","affiliation":[{"name":"Department of Computer Science and Cybersecurity, Metropolitan State University, St. Paul, MN, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8256-6988","authenticated-orcid":false,"given":"Yingjiu","family":"Li","sequence":"additional","affiliation":[{"name":"School of Information Systems, Singapore Management University, Singapore"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1145\/3064176.3064192"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1145\/2948618.2954331"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1145\/2382196.2382226"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1145\/2043556.2043580"},{"key":"ref31","first-page":"175","article-title":"Policy-sealed data: A new abstraction for building trusted cloud services","author":"santos","year":"2012","journal-title":"Proc 21st USENIX Security Symp"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-13869-0_14"},{"journal-title":"Intel Trusted Execution Technology Software Development Guide","year":"2018","key":"ref37"},{"key":"ref36","first-page":"187","article-title":"cTPM: A cloud TPM for cross-device trusted applications","author":"chen","year":"2014","journal-title":"Proc USENIX\/ACM Symp Netw Syst Design Implement"},{"key":"ref35","first-page":"321","article-title":"Pasture: Secure offline data access using commodity trusted hardware","author":"kotla","year":"2012","journal-title":"Proc USENIX Symp Oper Syst Design Implementation"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1145\/2043556.2043576"},{"year":"2018","key":"ref60"},{"year":"2018","key":"ref62"},{"year":"2018","key":"ref61"},{"key":"ref63","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2007.11"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/1352592.1352625"},{"journal-title":"The Transport Layer Security (TLS) Protocol Version 1 2 (rfc5246)","year":"2018","key":"ref64"},{"key":"ref27","article-title":"Attacking hypervisors via firmware and hardware","author":"gorobets","year":"2015","journal-title":"Proc Black Hat USA"},{"key":"ref65","doi-asserted-by":"publisher","DOI":"10.1145\/1506409.1506429"},{"key":"ref66","first-page":"1","article-title":"Innovative technology for CPU based attestation and sealing","author":"anati","year":"2013","journal-title":"Proc 2nd Int Workshop Hardw Archit Support Secur Privacy"},{"key":"ref29","first-page":"305","article-title":"vTPM: Virtualizing the trusted platform module","author":"berger","year":"2006","journal-title":"Proc 15th Usenix Security Symp"},{"key":"ref67","first-page":"841","article-title":"fTPM: A software-only implementation of a TPM chip","author":"raj","year":"2016","journal-title":"Proc 25th Usenix Security Symp"},{"key":"ref68","article-title":"Intel SGX remote attestation is not sufficient","author":"swami","year":"2017","journal-title":"Proc Black Hat USA"},{"journal-title":"Below the surface Exploring the deep web","year":"2015","author":"ciancaglini","key":"ref2"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2006.38"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1145\/2598918.2598922"},{"journal-title":"Cybercrime and Cloud Forensics Applications for Investigation Processes","year":"2012","author":"ruan","key":"ref22"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.4018\/jdcf.2012040103"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2014.11.006"},{"journal-title":"Cloud Forensics A Meta-Study of Challenges Approaches and Open Problems","year":"2013","author":"zawoad","key":"ref23"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/HICSS.2013.592"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1016\/j.diin.2013.06.010"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1145\/2484313.2484342"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1007\/s10586-015-0509-x"},{"year":"2018","key":"ref59"},{"year":"2018","key":"ref58"},{"journal-title":"TPM2 Software Stack Implmentation","year":"2018","key":"ref57"},{"year":"2018","key":"ref56"},{"year":"2018","key":"ref55"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1016\/j.ins.2006.03.014"},{"year":"2018","key":"ref53"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1109\/SADFE.2011.17"},{"journal-title":"Cloud Act","year":"2018","author":"congress","key":"ref10"},{"journal-title":"Forensics at the OJ Simpson Trial","year":"2017","key":"ref11"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1145\/3065913.3065915"},{"journal-title":"RCFL Annual Reports FY2016","year":"2016","key":"ref12"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2012.40"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1016\/j.diin.2012.05.001"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/CyberSecurity.2012.17"},{"year":"2018","key":"ref16"},{"year":"2018","key":"ref17"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/TSC.2015.2392099"},{"key":"ref19","first-page":"39","article-title":"CloudForen: A novel framework for digital forensics in cloud computing","volume":"21","author":"nyamagwa","year":"2014","journal-title":"J Harbin Inst Technol"},{"journal-title":"Cybercrime exposed Cybercrime-as-a-servic","year":"2013","author":"samani","key":"ref4"},{"journal-title":"Avoiding the hidden costs of the cloud","year":"2018","key":"ref3"},{"journal-title":"ZeusBot Found Using Amazon&#x2019;s EC2 as C&C Server","year":"0","author":"goodin","key":"ref6"},{"key":"ref5","first-page":"67","article-title":"Cloud-based DDoS attacks and defenses","author":"darwish","year":"2013","journal-title":"Proc Int Conf Inf Soc"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2010.12.006"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1016\/j.jss.2012.12.025"},{"key":"ref49","first-page":"208","article-title":"Forensics-as-a-service (FaaS): Computer forensic workflow management and processing using cloud","author":"wen","year":"2013","journal-title":"Proc 4th Int Conf Cloud Comput GRIDs Virtualization"},{"journal-title":"NIST Cloud Computing Forensic Science Challenges","year":"2013","key":"ref9"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2011.38"},{"key":"ref45","article-title":"Stalling live migrations on the cloud","author":"atya","year":"2017","journal-title":"Proc 10th USENIX Workshop Offensive Technol (WOOT)"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1145\/1455770.1455840"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1016\/j.camwa.2012.06.018"},{"key":"ref42","first-page":"14","article-title":"Fixing races for fun and profit: How to use access (2)","author":"dean","year":"2004","journal-title":"Proc 13th USENIX Secur Symp"},{"journal-title":"Spectre Attacks Exploiting Speculative Execution","year":"2018","author":"kocher","key":"ref41"},{"journal-title":"AWS Server Migration Service User Guide","year":"2018","key":"ref44"},{"journal-title":"Azure Migration Center","year":"2018","key":"ref43"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"https:\/\/ieeexplore.ieee.org\/ielam\/10206\/8734901\/8638983-aam.pdf","content-type":"application\/pdf","content-version":"am","intended-application":"syndication"},{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10206\/8734901\/08638983.pdf?arnumber=8638983","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,1,15]],"date-time":"2024-01-15T21:01:51Z","timestamp":1705352511000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/8638983\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019,10]]},"references-count":68,"journal-issue":{"issue":"10"},"URL":"https:\/\/doi.org\/10.1109\/tifs.2019.2898841","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"type":"print","value":"1556-6013"},{"type":"electronic","value":"1556-6021"}],"subject":[],"published":{"date-parts":[[2019,10]]}}}