{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T04:28:02Z","timestamp":1750220882816,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":17,"publisher":"ACM","license":[{"start":{"date-parts":[[2019,8,26]],"date-time":"2019-08-26T00:00:00Z","timestamp":1566777600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/501100007601","name":"Horizon 2020","doi-asserted-by":"publisher","award":["740723"],"award-info":[{"award-number":["740723"]}],"id":[{"id":"10.13039\/501100007601","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2019,8,26]]},"DOI":"10.1145\/3339252.3339275","type":"proceedings-article","created":{"date-parts":[[2019,8,9]],"date-time":"2019-08-09T12:21:03Z","timestamp":1565353263000},"page":"1-6","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":2,"title":["Enhancing credibility of digital evidence through provenance-based incident response handling"],"prefix":"10.1145","author":[{"given":"Ludwig","family":"Englbrecht","sequence":"first","affiliation":[{"name":"Department of Information Systems, University of Regensburg, Regensburg, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Gregor","family":"Langner","sequence":"additional","affiliation":[{"name":"Research Group Multimedia Information Systems, University of Vienna, Vienna, Austria"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"G\u00fcnther","family":"Pernul","sequence":"additional","affiliation":[{"name":"Department of Information Systems, University of Regensburg, Regensburg, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Gerald","family":"Quirchmayr","sequence":"additional","affiliation":[{"name":"Research Group Multimedia Information Systems, University of Vienna, Vienna, Austria"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2019,8,26]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"crossref","unstructured":"James P. Anderson. 1972. Computer Security Technology Planning Study. (1972).  James P. Anderson. 1972. Computer Security Technology Planning Study. (1972).","DOI":"10.21236\/AD0772806"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-67208-3_2"},{"key":"e_1_3_2_1_3_1","unstructured":"Khalid Belhajjame James Cheney Sam Coppens Stephen Cresswell Yolanda Gil Paul Groth Graham Klyne Timothy Lebo Jim McCusker etal 2013. PROV-DM: The PROV Data Model. (2013).  Khalid Belhajjame James Cheney Sam Coppens Stephen Cresswell Yolanda Gil Paul Groth Graham Klyne Timothy Lebo Jim McCusker et al. 2013. PROV-DM: The PROV Data Model. (2013)."},{"key":"e_1_3_2_1_4_1","first-page":"126","article-title":"Chain of custody and life cycle of digital evidence","volume":"3","author":"Cosic Jasmin","year":"2012","unstructured":"Jasmin Cosic , Goran Cosic , J \u0106osi\u0107 , and Z \u0106osi\u0107 . 2012 . Chain of custody and life cycle of digital evidence . Computer Technology and Aplications 3 (2012), 126 -- 129 . Jasmin Cosic, Goran Cosic, J \u0106osi\u0107, and Z \u0106osi\u0107. 2012. Chain of custody and life cycle of digital evidence. Computer Technology and Aplications 3 (2012), 126--129.","journal-title":"Computer Technology and Aplications"},{"key":"e_1_3_2_1_5_1","volume-title":"Towards a capability maturity model for digital forensic readiness. Wireless Networks (01","author":"Englbrecht Ludwig","year":"2019","unstructured":"Ludwig Englbrecht , Stefan Meier , and G\u00fcnther Pernul . 2019. Towards a capability maturity model for digital forensic readiness. Wireless Networks (01 January 2019 ). Ludwig Englbrecht, Stefan Meier, and G\u00fcnther Pernul. 2019. Towards a capability maturity model for digital forensic readiness. Wireless Networks (01 January 2019)."},{"key":"e_1_3_2_1_6_1","volume-title":"Storage and exchange formats for digital evidence. digital investigation 8, 2","author":"Flaglien Anders O","year":"2011","unstructured":"Anders O Flaglien , Aleksander Mallasvik , Magnus Mustorp , and Andr\u00e9 \u00c5rnes . 2011. Storage and exchange formats for digital evidence. digital investigation 8, 2 ( 2011 ), 122--128. Anders O Flaglien, Aleksander Mallasvik, Magnus Mustorp, and Andr\u00e9 \u00c5rnes. 2011. Storage and exchange formats for digital evidence. digital investigation 8, 2 (2011), 122--128."},{"key":"e_1_3_2_1_7_1","volume-title":"Proceedings of the IMF2007","author":"Freiling Felix","year":"2007","unstructured":"Felix Freiling and Bastian Schwittay . 2007 . A common process model for incident response and digital forensics . Proceedings of the IMF2007 (2007). Felix Freiling and Bastian Schwittay. 2007. A common process model for incident response and digital forensics. Proceedings of the IMF2007 (2007)."},{"key":"e_1_3_2_1_8_1","unstructured":"GovCERT.ch. 2016. Technical Report about the Espionage Case at RUAG. Technical Report.  GovCERT.ch. 2016. Technical Report about the Espionage Case at RUAG. Technical Report."},{"key":"e_1_3_2_1_9_1","volume-title":"10th {USENIX} Workshop on the Theory and Practice of Provenance (TaPP","author":"Han Xueyuan","year":"2018","unstructured":"Xueyuan Han , Thomas Pasquier , and Margo Seltzer . 2018. Provenance-based Intrusion Detection: Opportunities and Challenges . In 10th {USENIX} Workshop on the Theory and Practice of Provenance (TaPP 2018 ). Xueyuan Han, Thomas Pasquier, and Margo Seltzer. 2018. Provenance-based Intrusion Detection: Opportunities and Challenges. In 10th {USENIX} Workshop on the Theory and Practice of Provenance (TaPP 2018)."},{"key":"e_1_3_2_1_10_1","first-page":"800","article-title":"Guide to integrating forensic techniques into incident response","volume":"10","author":"Kent Karen","year":"2006","unstructured":"Karen Kent , Suzanne Chevalier , Tim Grance , and Hung Dang . 2006 . Guide to integrating forensic techniques into incident response . NIST Special Publication 10 , 14 (2006), 800 -- 886 . Karen Kent, Suzanne Chevalier, Tim Grance, and Hung Dang. 2006. Guide to integrating forensic techniques into incident response. NIST Special Publication 10, 14 (2006), 800--86.","journal-title":"NIST Special Publication"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1515\/jib-2017-0014"},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1145\/3127479.3129249"},{"key":"e_1_3_2_1_13_1","volume-title":"Information Flow Audit for Transparency and Compliance in the Handling of Personal Data. In 2016 IEEE International Conference on Cloud Engineering Workshop, IC2E Workshops","author":"Thomas F.","year":"2016","unstructured":"Thomas F. J.-M. Pasquier and David M. Eyers. 2016 . Information Flow Audit for Transparency and Compliance in the Handling of Personal Data. In 2016 IEEE International Conference on Cloud Engineering Workshop, IC2E Workshops , Berlin, Germany , April 4-8, 2016 . IEEE Computer Society, 112--117. Thomas F. J.-M. Pasquier and David M. Eyers. 2016. Information Flow Audit for Transparency and Compliance in the Handling of Personal Data. In 2016 IEEE International Conference on Cloud Engineering Workshop, IC2E Workshops, Berlin, Germany, April 4-8, 2016. IEEE Computer Society, 112--117."},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/2420950.2420989"},{"key":"e_1_3_2_1_15_1","unstructured":"Chris Prosise Kevin Mandia and Matt Pepe. 2003. Incident response & computer forensics. (2003).   Chris Prosise Kevin Mandia and Matt Pepe. 2003. Incident response & computer forensics. (2003)."},{"key":"e_1_3_2_1_16_1","unstructured":"John Tan. 2001. Forensic Readiness. (2001).  John Tan. 2001. Forensic Readiness. (2001)."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1007\/11427995_88"}],"event":{"name":"ARES '19: 14th International Conference on Availability, Reliability and Security","acronym":"ARES '19","location":"Canterbury CA United Kingdom"},"container-title":["Proceedings of the 14th International Conference on Availability, Reliability and Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3339252.3339275","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3339252.3339275","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T23:44:17Z","timestamp":1750203857000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3339252.3339275"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019,8,26]]},"references-count":17,"alternative-id":["10.1145\/3339252.3339275","10.1145\/3339252"],"URL":"https:\/\/doi.org\/10.1145\/3339252.3339275","relation":{},"subject":[],"published":{"date-parts":[[2019,8,26]]},"assertion":[{"value":"2019-08-26","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}