{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,21]],"date-time":"2026-04-21T12:29:28Z","timestamp":1776774568807,"version":"3.51.2"},"reference-count":177,"publisher":"MDPI AG","issue":"12","license":[{"start":{"date-parts":[[2023,11,24]],"date-time":"2023-11-24T00:00:00Z","timestamp":1700784000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Information"],"abstract":"<jats:p>Social media applications have been ubiquitous in modern society, and their usage has grown exponentially over the years. With the widespread adoption of these platforms, social media has evolved into a significant origin of digital evidence in the domain of digital forensics. The increasing utilization of social media has caused an increase in the number of studies focusing on artifact (digital remnants of data) recovery from these platforms. As a result, we aim to present a comprehensive survey of the existing literature from the past 15 years on artifact recovery from social media applications in digital forensics. We analyze various approaches and techniques employed for artifact recovery, structuring our review on well-defined analysis focus categories, which are memory, disk, and network. By scrutinizing the available literature, we determine the trends and commonalities in existing research and further identify gaps in existing literature and areas of opportunity for future research in this field. The survey is expected to provide a valuable resource for academicians, digital forensics professionals, and researchers by enhancing their comprehension of the current state of the art in artifact recovery from social media applications. Additionally, it highlights the need for continued research to keep up with social media\u2019s constantly evolving nature and its consequent impact on digital forensics.<\/jats:p>","DOI":"10.3390\/info14120629","type":"journal-article","created":{"date-parts":[[2023,11,24]],"date-time":"2023-11-24T06:51:28Z","timestamp":1700808688000},"page":"629","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":6,"title":["A Comprehensive Survey on Artifact Recovery from Social Media Platforms: Approaches and Future Research Directions"],"prefix":"10.3390","volume":"14","author":[{"given":"Khushi","family":"Gupta","sequence":"first","affiliation":[{"name":"Department of Computer Science, Sam Houston State University, Huntsville, TX 77340, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Damilola","family":"Oladimeji","sequence":"additional","affiliation":[{"name":"Department of Computer Science, Sam Houston State University, Huntsville, TX 77340, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4940-6808","authenticated-orcid":false,"given":"Cihan","family":"Varol","sequence":"additional","affiliation":[{"name":"Department of Computer Science, Sam Houston State University, Huntsville, TX 77340, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Amar","family":"Rasheed","sequence":"additional","affiliation":[{"name":"Department of Computer Science, Sam Houston State University, Huntsville, TX 77340, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Narasimha","family":"Shahshidhar","sequence":"additional","affiliation":[{"name":"Department of Computer Science, Sam Houston State University, Huntsville, TX 77340, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"1968","published-online":{"date-parts":[[2023,11,24]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","unstructured":"Ma, B., Tao, Z., Ma, R., Wang, C., Li, J., and Li, X. (IEEE Trans. Circuits Syst. Video Technol., 2023). A High-Performance Robust Reversible Data Hiding Algorithm Based on Polar Harmonic Fourier Moments, IEEE Trans. Circuits Syst. Video Technol., early access.","DOI":"10.1109\/TCSVT.2023.3311483"},{"key":"ref_2","doi-asserted-by":"crossref","unstructured":"Chaffey, D. (2023, May 12). Global Social Media Statistics Research Summary 2022 [June 2022]. Available online: https:\/\/www.smartinsights.com\/social-media-marketing\/social-media-strategy\/new-global-social-media-research\/.","DOI":"10.4324\/9781003009498-6"},{"key":"ref_3","unstructured":"Alqatawna, J., Madain, A., Al-Zoubi, A., and Al-Sayyed, R. (2017). Social Media Shaping e-Publishing and Academia, Springer."},{"key":"ref_4","doi-asserted-by":"crossref","first-page":"43","DOI":"10.1016\/j.ins.2017.08.063","article-title":"Social network security: Issues, challenges, threats, and solutions","volume":"421","author":"Rathore","year":"2017","journal-title":"Inf. Sci."},{"key":"ref_5","doi-asserted-by":"crossref","first-page":"2019","DOI":"10.1109\/COMST.2014.2321628","article-title":"Online social networks: Threats and solutions","volume":"16","author":"Fire","year":"2014","journal-title":"IEEE Commun. Surv. Tutor."},{"key":"ref_6","doi-asserted-by":"crossref","unstructured":"Patel, P., Kannoorpatti, K., Shanmugam, B., Azam, S., and Yeo, K.C. (2017, January 5\u20137). A theoretical review of social media usage by cyber-criminals. Proceedings of the 2017 International Conference on Computer Communication and Informatics (ICCCI), Coimbatore, India.","DOI":"10.1109\/ICCCI.2017.8117694"},{"key":"ref_7","doi-asserted-by":"crossref","first-page":"S24","DOI":"10.1016\/j.diin.2012.05.007","article-title":"Forensic analysis of social networking applications on mobile devices","volume":"9","author":"Baggili","year":"2012","journal-title":"Digit. Investig."},{"key":"ref_8","doi-asserted-by":"crossref","unstructured":"Luo, W., Liu, J., Liu, J., and Fan, C. (2009, January 12\u201314). An analysis of security in social networks. Proceedings of the 2009 Eighth IEEE International Conference on Dependable, Autonomic and Secure Computing, Chengdu, China.","DOI":"10.1109\/DASC.2009.100"},{"key":"ref_9","unstructured":"Norden, S. (2023, May 12). How the Internet Has Changed the Face of Crime. Available online: https:\/\/scholarscommons.fgcu.edu\/esploro\/outputs\/doctoral\/How-the-Internet-has-Changed-the\/99383341581306570."},{"key":"ref_10","doi-asserted-by":"crossref","first-page":"13","DOI":"10.1016\/j.chb.2014.03.026","article-title":"Cyberbullying in social networking sites: An adolescent victim\u2019s perspective","volume":"36","author":"Dredge","year":"2014","journal-title":"Comput. Hum. Behav."},{"key":"ref_11","doi-asserted-by":"crossref","first-page":"S64","DOI":"10.1016\/j.diin.2010.05.009","article-title":"Digital forensics research: The next 10 years","volume":"7","author":"Garfinkel","year":"2010","journal-title":"Digit. Investig."},{"key":"ref_12","doi-asserted-by":"crossref","unstructured":"Basumatary, B., and Kalita, H.K. (2022, January 23\u201325). Social media forensics\u2014A holistic review. Proceedings of the 2022 9th International Conference on Computing for Sustainable Global Development (INDIACom), New Delhi, India.","DOI":"10.23919\/INDIACom54597.2022.9763129"},{"key":"ref_13","first-page":"183","article-title":"Collecting the evidences and forensic analysis on social networks: Disputes and trends in research","volume":"XII","author":"Reddy","year":"2019","journal-title":"Stud. Rosenthal. J. Study Res."},{"key":"ref_14","first-page":"465","article-title":"Digging for the digital dirt: Discovery and use of evidence from social media sites","volume":"14","author":"Browning","year":"2010","journal-title":"SMU Sci. Tech. Law Rev."},{"key":"ref_15","unstructured":"Zainudin, N.M., Merabti, M., and Llewellyn-Jones, D. (2011, January 23\u201324). Online social networks as supporting evidence: A digital forensic investigation model and its application design. Proceedings of the 2011 International Conference on Research and Innovation in Information Systems, Kuala Lumpur, Malaysia."},{"key":"ref_16","doi-asserted-by":"crossref","unstructured":"Keyvanpour, M., Moradi, M., and Hasanzadeh, F. (2014). Computational Intelligence in Digital Forensics: Forensic Investigation and Applications, Springer.","DOI":"10.1007\/978-3-319-05885-6_2"},{"key":"ref_17","first-page":"209","article-title":"A survey on digital forensics trends","volume":"3","author":"Damshenas","year":"2014","journal-title":"Int. J. Cyber-Secur. Digit. Forensics"},{"key":"ref_18","doi-asserted-by":"crossref","first-page":"126","DOI":"10.1016\/j.diin.2019.02.001","article-title":"Evidence collection and forensics on social networks: Research challenges and directions","volume":"28","author":"Arshad","year":"2019","journal-title":"Digit. Investig."},{"key":"ref_19","doi-asserted-by":"crossref","unstructured":"Tso, Y.C., Wang, S.J., Huang, C.T., and Wang, W.J. (2012, January 20\u201322). iPhone social networking for evidence investigations using iTunes forensics. Proceedings of the 6th International Conference on Ubiquitous Information Management and Communication, Kuala Lumpur, Malaysia.","DOI":"10.1145\/2184751.2184827"},{"key":"ref_20","doi-asserted-by":"crossref","unstructured":"Gao, F., and Zhang, Y. (2013, January 22\u201324). Analysis of WeChat on iPhone. Proceedings of the 2nd International Symposium on Computer, Communication, Control and Automation, Shijiazhuang, China.","DOI":"10.2991\/3ca-13.2013.69"},{"key":"ref_21","doi-asserted-by":"crossref","unstructured":"Al Mushcab, R., and Gladyshev, P. (2015, January 6\u20139). Forensic analysis of instagram and path on an iPhone 5s mobile device. Proceedings of the 2015 IEEE Symposium on Computers and Communication (ISCC), Larnaca, Cyprus.","DOI":"10.1109\/ISCC.2015.7405508"},{"key":"ref_22","doi-asserted-by":"crossref","first-page":"40","DOI":"10.1016\/j.diin.2016.04.001","article-title":"Forensic analysis of kik messenger on ios devices","volume":"17","author":"Ovens","year":"2016","journal-title":"Digit. Investig."},{"key":"ref_23","first-page":"39","article-title":"Forensic analysis of Telegram messenger desktop on macOS","volume":"6","author":"Gregorio","year":"2018","journal-title":"Int. J. Res. Eng. Sci."},{"key":"ref_24","doi-asserted-by":"crossref","unstructured":"Iqbal, A., Marrington, A., and Baggili, I. (2013, January 21\u201322). Forensic artifacts of the ChatON Instant Messaging application. Proceedings of the 2013 8th International Workshop on Systematic Approaches to Digital Forensics Engineering (SADFE), Hong Kong, China.","DOI":"10.1109\/SADFE.2013.6911538"},{"key":"ref_25","unstructured":"Yusoff, M.N., Dehghantanha, A., and Mahmod, R. (2017). Contemporary Digital Forensic Investigations of Cloud and Mobile Applications, Elsevier."},{"key":"ref_26","doi-asserted-by":"crossref","unstructured":"Majeed, A., Zia, H., Imran, R., and Saleem, S. (2015, January 21\u201323). Forensic analysis of three social media apps in windows 10. Proceedings of the 2015 12th International Conference on High-Capacity Optical Networks and Enabling\/Emerging Technologies (HONET), Islamabad, Pakistan.","DOI":"10.1109\/HONET.2015.7395419"},{"key":"ref_27","unstructured":"Lee, C., and Chung, M. (2015). Computer Science and Its Applications, Springer."},{"key":"ref_28","first-page":"37","article-title":"Forensic analysis of social media apps in windows 10","volume":"10","author":"Majeed","year":"2017","journal-title":"NUST J. Eng. Sci."},{"key":"ref_29","doi-asserted-by":"crossref","unstructured":"Moffitt, K., Karabiyik, U., Hutchinson, S., and Yoon, Y.H. (2021, January 27\u201330). Discord forensics: The logs keep growing. Proceedings of the 2021 IEEE 11th Annual Computing and Communication Workshop and Conference (CCWC), Las Vegas, NV, USA.","DOI":"10.1109\/CCWC51732.2021.9376133"},{"key":"ref_30","doi-asserted-by":"crossref","first-page":"301118","DOI":"10.1016\/j.fsidi.2021.301118","article-title":"Forensic analysis of Matrix protocol and Riot. im application","volume":"36","author":"Schipper","year":"2021","journal-title":"Forensic Sci. Int. Digit. Investig."},{"key":"ref_31","doi-asserted-by":"crossref","first-page":"1513","DOI":"10.1111\/1556-4029.15014","article-title":"Microsoft Teams desktop application forensic investigations utilizing IndexedDB storage","volume":"67","author":"Paligu","year":"2022","journal-title":"J. Forensic Sci."},{"key":"ref_32","doi-asserted-by":"crossref","first-page":"88","DOI":"10.1016\/j.diin.2017.07.004","article-title":"Forensic analysis of telegram messenger for windows phone","volume":"22","author":"Gregorio","year":"2017","journal-title":"Digit. Investig."},{"key":"ref_33","unstructured":"Thakur, N.S. (2023, May 12). Forensic Analysis of WhatsApp on Android Smartphones. Available online: https:\/\/scholarworks.uno.edu\/td\/1706\/."},{"key":"ref_34","first-page":"38","article-title":"Skype forensics in android devices","volume":"78","author":"Forihat","year":"2013","journal-title":"Int. J. Comput. Appl."},{"key":"ref_35","unstructured":"Barton, T., and Azhar, M. (2016, January 9\u201313). Forensic analysis of the recovery of Wickr\u2019s ephemeral data on Android platforms. Proceedings of the First International Conference on Cyber-Technologies and Cyber-Systems, IARIA, Venice, Italy."},{"key":"ref_36","unstructured":"Azhar, M., and Barton, T.E.A. Forensic analysis of secure ephemeral messaging applications on android platforms. Proceedings of the International Conference on Global Security, Safety, and Sustainability."},{"key":"ref_37","first-page":"11","article-title":"Forensic analysis of LINE messenger on android","volume":"29","author":"Chang","year":"2018","journal-title":"J. Comput."},{"key":"ref_38","doi-asserted-by":"crossref","unstructured":"Al-Rawashdeh, A.M., Al-Sharif, Z.A., Al-Saleh, M.I., and Shatnawi, A.S. (2020, January 7\u20139). A post-mortem forensic approach for the kik messenger on android. Proceedings of the 2020 11th International Conference on Information and Communication Systems (ICICS), Irbid, Jordan.","DOI":"10.1109\/ICICS49469.2020.239559"},{"key":"ref_39","doi-asserted-by":"crossref","unstructured":"Satrya, G.B., Daely, P.T., and Shin, S.Y. (2016, January 5\u20138). Android forensics analysis: Private chat on social messenger. Proceedings of the 2016 Eighth International Conference on Ubiquitous and Future Networks (ICUFN), Vienna, Austria.","DOI":"10.1109\/ICUFN.2016.7537064"},{"key":"ref_40","doi-asserted-by":"crossref","unstructured":"Satrya, G.B., and Nugroho, M.A. (2016, January 13\u201315). Digital forensics study of internet messenger: Line artifact analysis in Android OS. Proceedings of the 2016 International Conference on Control, Electronics, Renewable Energy and Communications (ICCEREC), Bandung, Indonesia.","DOI":"10.1109\/ICCEREC.2016.7814959"},{"key":"ref_41","doi-asserted-by":"crossref","first-page":"469","DOI":"10.1080\/00450618.2015.1066854","article-title":"Investigating Social Networking applications on smartphones detecting Facebook, Twitter, LinkedIn and Google+ artefacts on Android and iOS platforms","volume":"48","author":"Dehghantanha","year":"2016","journal-title":"Aust. J. Forensic Sci."},{"key":"ref_42","doi-asserted-by":"crossref","first-page":"S77","DOI":"10.1016\/j.diin.2015.05.009","article-title":"Network and device forensic analysis of android social-messaging applications","volume":"14","author":"Walnycky","year":"2015","journal-title":"Digit. Investig."},{"key":"ref_43","doi-asserted-by":"crossref","first-page":"5","DOI":"10.1016\/j.diin.2018.04.006","article-title":"Forensics study of IMO call and chat app","volume":"25","author":"Sudozai","year":"2018","journal-title":"Digit. Investig."},{"key":"ref_44","doi-asserted-by":"crossref","unstructured":"Zhang, H., Chen, L., and Liu, Q. (2018, January 5\u20138). Digital forensic analysis of instant messaging applications on android smartphones. Proceedings of the 2018 International Conference on Computing, Networking and Communications (ICNC), Maui, HI, USA.","DOI":"10.1109\/ICCNC.2018.8390330"},{"key":"ref_45","doi-asserted-by":"crossref","first-page":"159","DOI":"10.1016\/j.diin.2019.03.012","article-title":"Forensic analysis of Microsoft Skype for Business","volume":"29","author":"Nicoletti","year":"2019","journal-title":"Digit. Investig."},{"key":"ref_46","doi-asserted-by":"crossref","unstructured":"Mahajan, A., Dahiya, M., and Sanghvi, H.P. (2013). Forensic analysis of instant messenger applications on android devices. arXiv.","DOI":"10.5120\/11602-6965"},{"key":"ref_47","doi-asserted-by":"crossref","first-page":"198","DOI":"10.17781\/P002306","article-title":"Forensic investigation technique on android\u2019s blackberry messenger using nist framework","volume":"6","author":"Riadi","year":"2017","journal-title":"Int. J. Cyber-Secur. Digit. Forensics"},{"key":"ref_48","doi-asserted-by":"crossref","first-page":"1035","DOI":"10.1016\/j.procs.2017.05.421","article-title":"Snapchat analysis to discover digital forensic artifacts on android smartphone","volume":"109","author":"Alyahya","year":"2017","journal-title":"Procedia Comput. Sci."},{"key":"ref_49","doi-asserted-by":"crossref","first-page":"435","DOI":"10.1111\/1556-4029.13267","article-title":"Forensic taxonomy of android social apps","volume":"62","author":"Azfar","year":"2017","journal-title":"J. Forensic Sci."},{"key":"ref_50","first-page":"16","article-title":"Forensic data extraction and analysis of left artifacts on emulated android phones: A case study of instant messaging applications","volume":"19","author":"Ashawa","year":"2017","journal-title":"Seizure"},{"key":"ref_51","first-page":"235","article-title":"Forensic Tool Comparison on Instagram Digital Evidence Based on Android with The NIST Method","volume":"5","author":"Riadi","year":"2018","journal-title":"Sci. J. Inform."},{"key":"ref_52","first-page":"9","article-title":"Forensics acquisition and analysis method of imo messenger","volume":"179","author":"Tri","year":"2018","journal-title":"Int. J. Comput. Appl."},{"key":"ref_53","doi-asserted-by":"crossref","first-page":"012116","DOI":"10.1088\/1757-899X\/1007\/1\/012116","article-title":"Forensic analysis of instagram on android","volume":"Volume 1007","author":"Alisabeth","year":"2020","journal-title":"Proceedings of the IOP Conference Series: Materials Science and Engineering"},{"key":"ref_54","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1007\/s42452-021-04431-9","article-title":"Forensic analysis of open-source XMPP\/Jabber multi-client instant messaging apps on Android smartphones","volume":"3","author":"Akinbi","year":"2021","journal-title":"SN Appl. Sci."},{"key":"ref_55","doi-asserted-by":"crossref","unstructured":"Hermawan, T., Suryanto, Y., Alief, F., and Roselina, L. (2020, January 10\u201311). Android forensic tools analysis for unsend chat on social media. Proceedings of the 2020 3rd International Seminar on Research of Information Technology and Intelligent Systems (ISRITI), Yogyakarta, Indonesia.","DOI":"10.1109\/ISRITI51436.2020.9315364"},{"key":"ref_56","first-page":"655","article-title":"A Comparative Analysis of Digital Forensic Investigation Tools on Facebook Messenger Applications","volume":"11","author":"Ardiningtias","year":"2022","journal-title":"J. Cyber Secur. Mobil."},{"key":"ref_57","doi-asserted-by":"crossref","first-page":"369","DOI":"10.1007\/s10660-014-9145-4","article-title":"Correlating messages from multiple IM networks to identify digital forensic artifacts","volume":"14","author":"Yasin","year":"2014","journal-title":"Electron. Commer. Res."},{"key":"ref_58","first-page":"55","article-title":"Twitter social network forensics on Windows 10","volume":"3","author":"Chang","year":"2016","journal-title":"Int. J. Innov. Sci. Eng. Technol."},{"key":"ref_59","first-page":"114","article-title":"Line messenger forensics on windows 10","volume":"30","author":"Chang","year":"2019","journal-title":"J. Comput."},{"key":"ref_60","doi-asserted-by":"crossref","unstructured":"Bashir, S., Abbas, H., Shafqat, N., Iqbal, W., and Saleem, K. Forensic Analysis of LinkedIn\u2019s Desktop Application on Windows 10 OS. Proceedings of the 16th International Conference on Information Technology-New Generations (ITNG 2019).","DOI":"10.1007\/978-3-030-14070-0_9"},{"key":"ref_61","doi-asserted-by":"crossref","unstructured":"Yang, T.Y., Dehghantanha, A., Choo, K.K.R., and Muda, Z. (2016). Windows instant messaging app forensics: Facebook and Skype as case studies. PLoS ONE, 11.","DOI":"10.1371\/journal.pone.0150300"},{"key":"ref_62","doi-asserted-by":"crossref","first-page":"301107","DOI":"10.1016\/j.fsidi.2021.301107","article-title":"Zooming into the pandemic! A forensic analysis of the Zoom Application","volume":"36","author":"Mahr","year":"2021","journal-title":"Forensic Sci. Int. Digit. Investig."},{"key":"ref_63","doi-asserted-by":"crossref","unstructured":"Khalid, Z., Iqbal, F., Kamoun, F., Hussain, M., and Khan, L.A. (2021, January 12\u201314). Forensic Analysis of the Cisco WebEx Application. Proceedings of the 2021 5th Cyber Security in Networking Conference (CSNet), Abu Dhabi, United Arab Emirates.","DOI":"10.1109\/CSNet52717.2021.9614647"},{"key":"ref_64","unstructured":"Le-Khac, N.A., Sgaras, C., and Kechadi, T. (2014, January 17\u201318). Forensic acquisition and analysis of Tango VoIP. Proceedings of the International Conference on Challenges in IT, Engineering and Technology (ICCIET 2014), Phuket, Thailand."},{"key":"ref_65","doi-asserted-by":"crossref","unstructured":"Shortall, A., and Azhar, M.H.B. (2015, January 3\u20135). Forensic acquisitions of WhatsApp data on popular mobile platforms. Proceedings of the 2015 Sixth International Conference on Emerging Security Technologies (EST), Braunschweig, Germany.","DOI":"10.1109\/EST.2015.16"},{"key":"ref_66","doi-asserted-by":"crossref","unstructured":"Awan, F.A. (2015, January 18). Forensic examination of social networking applications on smartphones. Proceedings of the 2015 Conference on Information Assurance and Cyber Security (CIACS), Rawalpindi, Pakistan.","DOI":"10.1109\/CIACS.2015.7395564"},{"key":"ref_67","unstructured":"Aji, M.P., Riadi, I., and Lutfhi, A. (2017). The digital forensic analysis of snapchat application using XML records. J. Theor. Appl. Inf. Technol., 95."},{"key":"ref_68","doi-asserted-by":"crossref","unstructured":"Keim, Y., Hutchinson, S., Shrivastava, A., and Karabiyik, U. (2022). Forensic Analysis of TikTok Alternatives on Android and iOS Devices: Byte, Dubsmash, and Triller. Electronics, 11.","DOI":"10.3390\/electronics11182972"},{"key":"ref_69","doi-asserted-by":"crossref","first-page":"434","DOI":"10.1111\/1556-4029.15208","article-title":"We are meeting on Microsoft Teams: Forensic analysis in Windows, Android, and iOS operating systems","volume":"68","author":"Bowling","year":"2023","journal-title":"J. Forensic Sci."},{"key":"ref_70","doi-asserted-by":"crossref","unstructured":"Azab, A., Watters, P., and Layton, R. (2012, January 29\u201330). Characterising network traffic for skype forensics. Proceedings of the 2012 Third Cybercrime and Trustworthy Computing Workshop, Ballarat, Australia.","DOI":"10.1109\/CTC.2012.14"},{"key":"ref_71","doi-asserted-by":"crossref","first-page":"110","DOI":"10.1016\/j.diin.2015.09.002","article-title":"WhatsApp network forensics: Decrypting and understanding the WhatsApp call signaling messages","volume":"15","author":"Karpisek","year":"2015","journal-title":"Digit. Investig."},{"key":"ref_72","unstructured":"Yusoff, M.N., Dehghantanha, A., and Mahmod, R. (2017). Contemporary Digital Forensic Investigations of Cloud and Mobile Applications, Elsevier."},{"key":"ref_73","unstructured":"Bhatt, A.J., Gupta, C., and Mittal, S. (2018, January 2\u20134). Network forensics analysis of iOS social networking and messaging Apps. Proceedings of the 2018 Eleventh International Conference on Contemporary Computing (IC3), Noida, India."},{"key":"ref_74","doi-asserted-by":"crossref","unstructured":"Cents, R., and Le-Khac, N.A. (January, January 29). Towards a New Approach to Identify WhatsApp Messages. Proceedings of the 2020 IEEE 19th International Conference on Trust, Security and Privacy in Computing and Communications (TrustCom), Guangzhou, China.","DOI":"10.1109\/TrustCom50675.2020.00259"},{"key":"ref_75","doi-asserted-by":"crossref","unstructured":"Afzal, A., Hussain, M., Saleem, S., Shahzad, M.K., Ho, A.T., and Jung, K.H. (2021). Encrypted Network Traffic Analysis of Secure Instant Messaging Application: A Case Study of Signal Messenger App. Appl. Sci., 11.","DOI":"10.3390\/app11177789"},{"key":"ref_76","doi-asserted-by":"crossref","unstructured":"Simon, M., and Slay, J. (2010, January 15\u201318). Recovery of skype application activity data from physical memory. Proceedings of the 2010 International Conference on Availability, Reliability and Security, Krakow, Poland.","DOI":"10.1109\/ARES.2010.73"},{"key":"ref_77","doi-asserted-by":"crossref","first-page":"1368","DOI":"10.1109\/JSAC.2011.110804","article-title":"Live data mining concerning social networking forensics based on a facebook session through aggregation of social data","volume":"29","author":"Chu","year":"2011","journal-title":"IEEE J. Sel. Areas Commun."},{"key":"ref_78","unstructured":"Chu, H.C., Yang, S.W., Wang, S.J., and Park, J.H. (2012). Information Technology Convergence, Secure and Trust Computing, and Data Management, Springer."},{"key":"ref_79","unstructured":"Sgaras, C., Kechadi, M., and Le-Khac, N.A. (2012). Computational Forensics, Springer."},{"key":"ref_80","doi-asserted-by":"crossref","first-page":"399","DOI":"10.1007\/s10660-013-9116-1","article-title":"The disclosure of an Android smartphone\u2019s digital footprint respecting the Instant Messaging utilizing Skype and MSN","volume":"13","author":"Chu","year":"2013","journal-title":"Electron. Commer. Res."},{"key":"ref_81","doi-asserted-by":"crossref","unstructured":"Zhou, F., Yang, Y., Ding, Z., and Sun, G. (2015, January 8\u201312). Dump and analysis of android volatile memory on wechat. Proceedings of the 2015 IEEE International Conference on Communications (ICC), London, UK.","DOI":"10.1109\/ICC.2015.7249467"},{"key":"ref_82","doi-asserted-by":"crossref","unstructured":"Nisioti, A., Mylonas, A., Katos, V., Yoo, P.D., and Chryssanthou, A. (2017, January 3\u20136). You can run but you cannot hide from memory: Extracting IM evidence of Android apps. Proceedings of the 2017 IEEE Symposium on Computers and Communications (ISCC), Heraklion, Crete, Greece.","DOI":"10.1109\/ISCC.2017.8024571"},{"key":"ref_83","doi-asserted-by":"crossref","unstructured":"Kazim, A., Almaeeni, F., Al Ali, S., Iqbal, F., and Al-Hussaeni, K. (2019, January 11\u201313). Memory forensics: Recovering chat messages and encryption master key. Proceedings of the 2019 10th International Conference on Information and Communication Systems (ICICS), Irbid, Jordan.","DOI":"10.1109\/IACS.2019.8809179"},{"key":"ref_84","first-page":"305","article-title":"Live forensics analysis of line app on proprietary operating system","volume":"4","author":"Riadi","year":"2019","journal-title":"Kinetik Game Technol. Inf. Syst. Comput. Netw. Comput. Electron. Control"},{"key":"ref_85","doi-asserted-by":"crossref","first-page":"301401","DOI":"10.1016\/j.fsidi.2022.301401","article-title":"Forensic investigation of instant messaging services on linux OS: Discord and Slack as case studies","volume":"42","author":"Davis","year":"2022","journal-title":"Forensic Sci. Int. Digit. Investig."},{"key":"ref_86","unstructured":"Kiley, M., Dankner, S., and Rogers, M. Forensic analysis of volatile instant messaging. Proceedings of the IFIP International Conference on Digital Forensics."},{"key":"ref_87","unstructured":"Husain, M.I., and Sridhar, R. (2009). Proceedings of the International Conference on Digital Forensics and Cyber Crime, Springer."},{"key":"ref_88","unstructured":"Al Mutawa, N., Al Awadhi, I., Baggili, I., and Marrington, A. (2011, January 11\u201314). Forensic artifacts of Facebook\u2019s instant messaging service. Proceedings of the 2011 International Conference for Internet Technology and Secured Transactions, Abu Dhabi, United Arab Emirates."},{"key":"ref_89","unstructured":"Baca, M., Cosic, J., and Cosic, Z. (2013, January 24\u201327). Forensic analysis of social networks (case study). Proceedings of the ITI 2013 35th International Conference on Information Technology Interfaces, Dubrovnik, Croatia."},{"key":"ref_90","first-page":"410","article-title":"Forensic Investigation on WhatsApp Web Using Framework Integrated Digital Forensic Investigation Framework Version 2","volume":"7","author":"Actoriano","year":"2018","journal-title":"Int. J. Cyber-Secur. Digit. Forensics (IJCSDF)"},{"key":"ref_91","doi-asserted-by":"crossref","unstructured":"Cloyd, T., Osborn, T., Ellingboe, B., Glisson, W.B., and Choo, K.K.R. (2018, January 1\u20133). Browser analysis of residual facebook data. Proceedings of the 2018 17th IEEE International Conference on Trust, Security and Privacy in Computing and Communications\/12th IEEE International Conference on Big Data Science and Engineering (TrustCom\/BigDataSE), New York, NY, USA.","DOI":"10.1109\/TrustCom\/BigDataSE.2018.00200"},{"key":"ref_92","doi-asserted-by":"crossref","first-page":"100076","DOI":"10.1016\/j.fsir.2020.100076","article-title":"ACPO principles for digital evidence: Time for an update?","volume":"2","author":"Horsman","year":"2020","journal-title":"Forensic Sci. Int. Rep."},{"key":"ref_93","doi-asserted-by":"crossref","unstructured":"Paligu, F., and Varol, C. (2020). Browser forensic investigations of whatsapp web utilizing indexeddb persistent storage. Future Internet, 12.","DOI":"10.3390\/fi12110184"},{"key":"ref_94","first-page":"321","article-title":"LinkedIn Social Media Forensics on Windows 10","volume":"22","author":"Chang","year":"2020","journal-title":"Int. J. Netw. Secur."},{"key":"ref_95","first-page":"47","article-title":"Browser forensics on web-based tiktok applications","volume":"175","author":"Pandela","year":"2020","journal-title":"Int. J. Comput. Appl."},{"key":"ref_96","doi-asserted-by":"crossref","first-page":"301479","DOI":"10.1016\/j.fsidi.2022.301479","article-title":"Digital forensic analysis of discord on google chrome","volume":"44","author":"Gupta","year":"2023","journal-title":"Forensic Sci. Int. Digit. Investig."},{"key":"ref_97","unstructured":"Cusack, B., and Alshaifi, S. (December, January 30). Mining Social Networking Sites for Digital Evidence. Proceedings of the 13th Australian Digital Forensics Conference, Perth, WA, Australia."},{"key":"ref_98","unstructured":"Chang, M.S. (2016). Evidence gathering of instagram on windows 10. Int. J. Innov. Sci. Eng. Technol., 3."},{"key":"ref_99","first-page":"850","article-title":"Forensic Analysis of Social Networks Based on Instagram","volume":"21","author":"Chang","year":"2019","journal-title":"Int. J. Netw. Secur."},{"key":"ref_100","doi-asserted-by":"crossref","unstructured":"Al-Duwairi, B., Shatnawi, A.S., Jaradat, H., Al-Musa, A., and Al-Awadat, H. (2022, January 6\u20137). On the Digital Forensics of Social Networking Web-based Applications. Proceedings of the 2022 10th International Symposium on Digital Forensics and Security (ISDFS), Istanbul, Turkey.","DOI":"10.1109\/ISDFS55398.2022.9800839"},{"key":"ref_101","doi-asserted-by":"crossref","first-page":"301448","DOI":"10.1016\/j.fsidi.2022.301448","article-title":"Forensic investigation of Google Meet for memory and browser artifacts","volume":"43","author":"Iqbal","year":"2022","journal-title":"Forensic Sci. Int. Digit. Investig."},{"key":"ref_102","first-page":"5","article-title":"Security vulnerabilities of skype application artifacts: A digital forensic approach","volume":"12","author":"Idowu","year":"2019","journal-title":"Int. J. Appl. Inf. Syst"},{"key":"ref_103","unstructured":"Iqbal, A., Alobaidli, H., Almarzooqi, A., and Jones, A. (2015, January 21\u201323). LINE IM app forensic analysis. Proceedings of the 12th International Conference on High-Capacity Optical Networks and Enabling\/Emerging Technologies (HONET-ICT 2015), Islamabad, Pakistan."},{"key":"ref_104","first-page":"189","article-title":"Digital forensic analysis of discord mobile application on android based smartphones","volume":"6","author":"Kara","year":"2022","journal-title":"Acta Infol."},{"key":"ref_105","unstructured":"Khoa, N.H., Duy, P.T., Do Hoang, H., and Pham, V.H. (2020, January 14\u201315). Forensic analysis of tiktok application to seek digital artifacts on android smartphone. Proceedings of the 2020 RIVF International Conference on Computing and Communication Technologies (RIVF), Ho Chi Minh City, Vietnam."},{"key":"ref_106","doi-asserted-by":"crossref","unstructured":"Domingues, P., Nogueira, R., Francisco, J.C., and Frade, M. (2020, January 25\u201328). Post-mortem digital forensic artifacts of TikTok Android App. Proceedings of the 15th International Conference on Availability, Reliability and Security (ARES), Virtual.","DOI":"10.1145\/3407023.3409203"},{"key":"ref_107","unstructured":"Agrawal, A.K., Sharma, A., and Khatri, P. (2019, January 13\u201315). Digital forensic analysis of Facebook app in virtual environment. Proceedings of the 2019 6th International Conference on Computing for Sustainable Global Development (INDIACom), New Delhi, India."},{"key":"ref_108","doi-asserted-by":"crossref","first-page":"e128","DOI":"10.1002\/spy2.128","article-title":"Examining artifacts generated by setting Facebook Messenger as a default SMS application on Android: Implication for personal data privacy","volume":"3","author":"Ntonja","year":"2020","journal-title":"Secur. Priv."},{"key":"ref_109","doi-asserted-by":"crossref","unstructured":"Yudhana, A., Riadi, I., and Anshori, I. (2018). Identification of Digital Evidence Facebook Messenger on Mobile Phone With National Institute of Standards Technology (Nist) Method. J. Ilm. Kursor, 9.","DOI":"10.28961\/kursor.v9i3.152"},{"key":"ref_110","first-page":"15","article-title":"Investigation on instagram android-based using digital forensics research workshop framework","volume":"175","author":"Pambayun","year":"2020","journal-title":"Int. J. Comput. Appl."},{"key":"ref_111","doi-asserted-by":"crossref","unstructured":"Kumar, S.T., and Karabiyik, U. (November, January 31). Instagram Forensic Analysis Revisited: Does anything really vanish?. Proceedings of the 2021 International Symposium on Networks, Computers and Communications (ISNCC), Dubai, United Arab Emirates.","DOI":"10.1109\/ISNCC52172.2021.9615910"},{"key":"ref_112","first-page":"34","article-title":"Mobile Forensic on Android-Based IMO Messenger Services Using Digital Forensic Research Workshop (DFRWS) Method","volume":"174","author":"Ichsan","year":"2021","journal-title":"Int. J. Comput. Appl."},{"key":"ref_113","doi-asserted-by":"crossref","unstructured":"Mehrotra, T., and Mehtre, B. (2013, January 26\u201328). Forensic analysis of Wickr application on android devices. Proceedings of the 2013 IEEE International Conference on Computational Intelligence and Computing Research, Madurai, India.","DOI":"10.1109\/ICCIC.2013.6724230"},{"key":"ref_114","doi-asserted-by":"crossref","first-page":"1721","DOI":"10.1111\/1556-4029.14750","article-title":"Forensic analysis of Twitch video streaming activities on Android","volume":"66","author":"AlZahrani","year":"2021","journal-title":"J. Forensic Sci."},{"key":"ref_115","doi-asserted-by":"crossref","first-page":"590","DOI":"10.1080\/00450618.2019.1610064","article-title":"Forensic analysis of BiP Messenger on android smartphones","volume":"52","author":"Akbal","year":"2020","journal-title":"Aust. J. Forensic Sci."},{"key":"ref_116","unstructured":"Manna, F., and Agrawal, A.K. (2023). Artificial Intelligence and Communication Technologies, Soft Computing Research Society."},{"key":"ref_117","first-page":"30","article-title":"Mobile Forensic Signal Instant Messenger Services in Case of Web Phishing using National Institute of Standards and Technology Method","volume":"184","author":"Irawan","year":"2022","journal-title":"Int. J. Comput. Appl."},{"key":"ref_118","first-page":"21","article-title":"Digital Forensic Signal Instant Messages Services in Case of Cyberbullying using Digital Forensic Research Workshop Method","volume":"184","author":"Prayogo","year":"2022","journal-title":"Int. J. Comput. Appl."},{"key":"ref_119","doi-asserted-by":"crossref","unstructured":"Krishnapriya, S., Priyanka, V., and Kumar, S.S. (2021, January 21\u201322). Forensic Extraction and Analysis of Signal Application in Android Phones. Proceedings of the 2021 International Conference on Forensics, Analytics, Big Data, Security (FABS), Bengaluru, India.","DOI":"10.1109\/FABS52071.2021.9702702"},{"key":"ref_120","doi-asserted-by":"crossref","first-page":"62","DOI":"10.1108\/ICS-03-2017-0011","article-title":"Forensic analysis of Google Allo messenger on Android platform","volume":"27","author":"Agrawal","year":"2019","journal-title":"Inf. Comput. Secur."},{"key":"ref_121","doi-asserted-by":"crossref","unstructured":"Azfar, A., Choo, K.K.R., and Liu, L. (2016, January 5\u20138). An android social app forensics adversary model. Proceedings of the 2016 49th Hawaii International Conference on System Sciences (HICSS), Koloa, HI, USA.","DOI":"10.1109\/HICSS.2016.693"},{"key":"ref_122","first-page":"26","article-title":"Implementation of forensic analysis procedures for whatsapp and viber android applications","volume":"128","author":"Lone","year":"2015","journal-title":"Int. J. Comput. Appl."},{"key":"ref_123","unstructured":"Dargahi, T., Dehghantanha, A., and Conti, M. (2017). Contemporary Digital Forensic Investigations of Cloud and Mobile Applications, Elsevier."},{"key":"ref_124","doi-asserted-by":"crossref","first-page":"119","DOI":"10.17781\/P002369","article-title":"Forensics Analysis of Skype, Viber and WhatsApp Messenger on Android Platform","volume":"7","author":"Onovakpuri","year":"2018","journal-title":"Int. J. Cyber-Secur. Digit. Forensics"},{"key":"ref_125","doi-asserted-by":"crossref","unstructured":"Rathi, K., Karabiyik, U., Aderibigbe, T., and Chi, H. (2018, January 22\u201325). Forensic analysis of encrypted instant messaging applications on Android. Proceedings of the 2018 6th International Symposium on Digital Forensic and Security (ISDFS), Antalya, Turkey.","DOI":"10.1109\/ISDFS.2018.8355344"},{"key":"ref_126","doi-asserted-by":"crossref","unstructured":"Ababneh, A., Awwad, M.A., and Al-Saleh, M.I. (2017, January 27\u201330). IMO forensics in android and windows systems. Proceedings of the 2017 8th International Conference on Information, Intelligence, Systems & Applications (IISA), Larnaca, Cyprus.","DOI":"10.1109\/IISA.2017.8316377"},{"key":"ref_127","doi-asserted-by":"crossref","unstructured":"Salamh, F.E., Karabiyik, U., and Rogers, M.K. (2020, January 20\u201322). Asynchronous forensic investigative approach to recover deleted data from instant messaging applications. Proceedings of the 2020 International Symposium on Networks, Computers and Communications (ISNCC), Montreal, QC, Canada.","DOI":"10.1109\/ISNCC49221.2020.9297227"},{"key":"ref_128","doi-asserted-by":"crossref","first-page":"301447","DOI":"10.1016\/j.fsidi.2022.301447","article-title":"Retrieving deleted records from Telegram","volume":"43","author":"Vasilaras","year":"2022","journal-title":"Forensic Sci. Int. Digit. Investig."},{"key":"ref_129","doi-asserted-by":"crossref","first-page":"300998","DOI":"10.1016\/j.fsidi.2020.300998","article-title":"A study on the decryption methods of telegram X and BBM-Enterprise databases in mobile and PC","volume":"35","author":"Kim","year":"2020","journal-title":"Forensic Sci. Int. Digit. Investig."},{"key":"ref_130","doi-asserted-by":"crossref","first-page":"301138","DOI":"10.1016\/j.fsidi.2021.301138","article-title":"Forensic analysis of instant messaging apps: Decrypting Wickr and private text messaging data","volume":"37","author":"Kim","year":"2021","journal-title":"Forensic Sci. Int. Digit. Investig."},{"key":"ref_131","unstructured":"Choi, J., Park, J., and Kim, H. (2017, January 13\u201316). Forensic analysis of the backup database file in KakaoTalk messenger. Proceedings of the 2017 IEEE International Conference on Big Data and Smart Computing (BigComp), Jeju Island, Republic of Korea."},{"key":"ref_132","doi-asserted-by":"crossref","first-page":"S50","DOI":"10.1016\/j.diin.2019.01.011","article-title":"Digital forensic analysis of encrypted database files in instant messaging applications on Windows operating systems: Case study with KakaoTalk, NateOn and QQ messenger","volume":"28","author":"Choi","year":"2019","journal-title":"Digit. Investig."},{"key":"ref_133","first-page":"2","article-title":"Whatsapp forensics: Decryption of encrypted whatsapp databases on non rooted android devices","volume":"5","author":"Gudipaty","year":"2015","journal-title":"J. Inf. Technol. Softw. Eng."},{"key":"ref_134","doi-asserted-by":"crossref","first-page":"44","DOI":"10.1016\/j.diin.2016.10.001","article-title":"Forensic analysis of the ChatSecure instant messaging application on android smartphones","volume":"19","author":"Anglano","year":"2016","journal-title":"Digit. Investig."},{"key":"ref_135","doi-asserted-by":"crossref","first-page":"3","DOI":"10.1016\/j.diin.2016.11.002","article-title":"Forensic analysis of WeChat on Android smartphones","volume":"21","author":"Wu","year":"2017","journal-title":"Digit. Investig."},{"key":"ref_136","doi-asserted-by":"crossref","first-page":"301347","DOI":"10.1016\/j.fsidi.2022.301347","article-title":"Forensic analysis of instant messengers: Decrypt Signal, Wickr, and Threema","volume":"40","author":"Son","year":"2022","journal-title":"Forensic Sci. Int. Digit. Investig."},{"key":"ref_137","first-page":"272","article-title":"Client-side Skype forensics: An overview","volume":"8667","author":"Creutzburg","year":"2013","journal-title":"Multimed. Content Mob. Devices"},{"key":"ref_138","first-page":"69","article-title":"A comparative study of forensic tools for WhatsApp analysis using NIST measurements","volume":"8","author":"Umar","year":"2017","journal-title":"Int. J. Adv. Comput. Sci. Appl."},{"key":"ref_139","first-page":"337","article-title":"Examination of digital evidence on android-based line messenger","volume":"7","author":"Riadi","year":"2018","journal-title":"Int. J. Cyber-Secur. Digit. Forensics (IJCSDF)"},{"key":"ref_140","doi-asserted-by":"crossref","unstructured":"Raji, M., Wimmer, H., and Haddad, R.J. (2018, January 19\u201322). Analyzing data from an android smartphone while comparing between two forensic tools. Proceedings of the SoutheastCon 2018, St. Petersburg, FL, USA.","DOI":"10.1109\/SECON.2018.8478851"},{"key":"ref_141","doi-asserted-by":"crossref","unstructured":"Muflih, G.Z., Sunardi, S., Riadi, I., Yudhana, A., and Azmi, H.I. (2023). Comparison of Forensic Tools on Social Media Services Using the Digital Forensic Research Workshop Method (DFRWS). JIKO (Jurnal Inform. Dan Komputer), 6.","DOI":"10.33387\/jiko.v6i1.5872"},{"key":"ref_142","doi-asserted-by":"crossref","first-page":"31","DOI":"10.1016\/j.diin.2017.09.002","article-title":"Forensic analysis of telegram messenger on android smartphones","volume":"23","author":"Anglano","year":"2017","journal-title":"Digit. Investig."},{"key":"ref_143","doi-asserted-by":"crossref","first-page":"201","DOI":"10.1016\/j.diin.2014.04.003","article-title":"Forensic analysis of WhatsApp Messenger on Android smartphones","volume":"11","author":"Anglano","year":"2014","journal-title":"Digit. Investig."},{"key":"ref_144","doi-asserted-by":"crossref","first-page":"101650","DOI":"10.1016\/j.cose.2019.101650","article-title":"The android forensics automator (anfora): A tool for the automated forensic analysis of android applications","volume":"88","author":"Anglano","year":"2020","journal-title":"Comput. Secur."},{"key":"ref_145","doi-asserted-by":"crossref","first-page":"222","DOI":"10.1016\/j.diin.2012.11.003","article-title":"DigLA\u2014A Digsby log analysis tool to identify forensic artifacts","volume":"9","author":"Yasin","year":"2013","journal-title":"Digit. Investig."},{"key":"ref_146","doi-asserted-by":"crossref","unstructured":"Casser, T., and Ketel, M. (2014, January 28\u201329). Developing a forensics tool for social media. Proceedings of the 2014 ACM Southeast Regional Conference, Kennesaw, GA, USA.","DOI":"10.1145\/2638404.2638491"},{"key":"ref_147","doi-asserted-by":"crossref","unstructured":"Motyli\u0144ski, M., MacDermott, \u00c1., Iqbal, F., Hussain, M., and Aleem, S. (2020, January 3\u20135). Digital forensic acquisition and analysis of discord applications. Proceedings of the 2020 International Conference on Communications, Computing, Cybersecurity, and Informatics (CCCI), Sharjah, United Arab Emirates.","DOI":"10.1109\/CCCI49893.2020.9256668"},{"key":"ref_148","doi-asserted-by":"crossref","first-page":"484","DOI":"10.1016\/j.cose.2018.08.013","article-title":"Forensic analysis of communication records of messaging applications from physical memory","volume":"86","author":"Barradas","year":"2019","journal-title":"Comput. Secur."},{"key":"ref_149","doi-asserted-by":"crossref","first-page":"301342","DOI":"10.1016\/j.fsidi.2022.301342","article-title":"Extraction and analysis of retrievable memory artifacts from Windows Telegram Desktop application","volume":"40","year":"2022","journal-title":"Forensic Sci. Int. Digit. Investig."},{"key":"ref_150","doi-asserted-by":"crossref","unstructured":"Thantilage, R.D., and Le Khac, N.A. (2019, January 5\u20138). Framework for the retrieval of social media and instant messaging evidence from volatile memory. Proceedings of the 2019 18th IEEE International Conference on Trust, Security and Privacy in Computing and Communications\/13th IEEE International Conference on Big Data Science and Engineering (TrustCom\/BigDataSE), Rotorua, New Zealand.","DOI":"10.1109\/TrustCom\/BigDataSE.2019.00070"},{"key":"ref_151","unstructured":"Yan, S., Choo, K.K.R., and Le-Khac, N.A. (2022). A Practical Hands-On Approach to Database Forensics, Springer."},{"key":"ref_152","unstructured":"Kent, K., Chevalier, S., Grance, T., and Dang, H. (2023, May 12). Sp 800-86. Guide to Integrating Forensic Techniques into Incident Response, Available online: https:\/\/csrc.nist.gov\/pubs\/sp\/800\/86\/final."},{"key":"ref_153","unstructured":"McKemmish, R. (1999). What Is Forensic Computing?, Australian Institute of Criminology Canberra."},{"key":"ref_154","unstructured":"Baryamureeba, V., and Tushabe, F. (2004, January 11\u201313). The enhanced digital investigation process model. Proceedings of the Digital Forensic Research Conference, Baltimore, MD, USA."},{"key":"ref_155","unstructured":"Garvey, T., and LaBerge, J.W.G. (2023, May 12). Forensic Intelligence Models: Assessment of Current Practices in the United and Internationally, Available online: https:\/\/nij.ojp.gov\/library\/publications\/forensic-intelligence-models-assessment-current-practices-united-states-and."},{"key":"ref_156","unstructured":"Husain, M.I., Baggili, I., and Sridhar, R. (2010, January 4\u20136). A simple cost-effective framework for iPhone forensic analysis. Proceedings of the Digital Forensics and Cyber Crime: Second International ICST Conference, ICDF2C 2010, Abu Dhabi, United Arab Emirates."},{"key":"ref_157","first-page":"2806","article-title":"Evaluation of integrated digital forensics investigation framework for the investigation of smartphones using soft system methodology","volume":"7","author":"Ruuhwan","year":"2017","journal-title":"Int. J. Electr. Comput. Eng."},{"key":"ref_158","doi-asserted-by":"crossref","first-page":"S42","DOI":"10.1016\/j.diin.2011.05.006","article-title":"Visualization in testing a volatile memory forensic tool","volume":"8","author":"Inoue","year":"2011","journal-title":"Digit. Investig."},{"key":"ref_159","unstructured":"Ghafarian, A., and Fredy, J. (2023). Proceedings of the Science and Information Conference, Springer."},{"key":"ref_160","unstructured":"Garcia, G.L. (2007, January 11\u201312). Forensic physical memory analysis: An overview of tools and techniques. Proceedings of the TKK T-110.5290 Seminar on Network Security, TKK, Helsinki, Finland."},{"key":"ref_161","unstructured":"Oberlo (2022, September 11). Most Popular Web Browsers in 2022. Available online: https:\/\/www.oberlo.com\/statistics\/browser-market-share."},{"key":"ref_162","doi-asserted-by":"crossref","first-page":"200892","DOI":"10.1016\/j.fsidi.2019.200892","article-title":"Packet analysis for network forensics: A comprehensive survey","volume":"32","author":"Sikos","year":"2020","journal-title":"Forensic Sci. Int. Digit. Investig."},{"key":"ref_163","doi-asserted-by":"crossref","first-page":"52","DOI":"10.4018\/IJoSE.2019010105","article-title":"Digital forensic investigation of social media, acquisition and analysis of digital evidence","volume":"2","author":"Montasari","year":"2019","journal-title":"Int. J. Strateg. Eng. (IJoSE)"},{"key":"ref_164","doi-asserted-by":"crossref","first-page":"193","DOI":"10.1016\/j.diin.2005.08.001","article-title":"Generalizing sources of live network evidence","volume":"2","author":"Nikkel","year":"2005","journal-title":"Digit. Investig."},{"key":"ref_165","doi-asserted-by":"crossref","unstructured":"Umrani, A., Javed, Y., and Iftikhar, M. (2022, January 12\u201313). Network forensic analysis of Twitter application on Android OS. Proceedings of the 2022 International Conference on Frontiers of Information Technology (FIT), Islamabad, Pakistan.","DOI":"10.1109\/FIT57066.2022.00053"},{"key":"ref_166","unstructured":"Beale, J., Orebaugh, A., and Ramirez, G. (2006). Wireshark & Ethereal Network Protocol Analyzer Toolkit, Elsevier."},{"key":"ref_167","unstructured":"Sanders, C. (2017). Practical Packet Analysis: Using Wireshark to Solve Real-World Network Problems, No Starch Press."},{"key":"ref_168","doi-asserted-by":"crossref","first-page":"335","DOI":"10.1016\/j.cose.2017.06.012","article-title":"A novel privacy preserving user identification approach for network traffic","volume":"70","author":"Clarke","year":"2017","journal-title":"Comput. Secur."},{"key":"ref_169","doi-asserted-by":"crossref","first-page":"78","DOI":"10.1145\/1941487.1941508","article-title":"Privacy-preserving network forensics","volume":"54","author":"Afanasyev","year":"2011","journal-title":"Commun. ACM"},{"key":"ref_170","doi-asserted-by":"crossref","unstructured":"Al Mushcab, R., and Gladyshev, P. (2015, January 15\u201317). The significance of different backup applications in retrieving social networking forensic artifacts from Android-based mobile devices. Proceedings of the 2015 Second International Conference on Information Security and Cyber Forensics (InfoSec), Cape Town, South Africa.","DOI":"10.1109\/InfoSec.2015.7435508"},{"key":"ref_171","unstructured":"Hweidi, R.F.A., Jazzar, M., Eleyan, A., and Bejaoui, T. (2023, January 25\u201327). Forensics Investigation on Social Media Apps and Web Apps Messaging in Android Smartphone. Proceedings of the 2023 International Conference on Smart Applications, Communications and Networking (SmartNets), Instanbul, Turkey."},{"key":"ref_172","doi-asserted-by":"crossref","unstructured":"Makate, A., Muduva, M., Chaudhary, N.K., and Chiwariro, R. (2023). Setting the Tone for Sound Forensic Investigations on Android-Based Social Media Platforms. Int. J. Res. Appl. Sci. Eng. Technol., 11.","DOI":"10.22214\/ijraset.2023.49982"},{"key":"ref_173","doi-asserted-by":"crossref","unstructured":"Khweiled, R., Jazzar, M., Eleyan, A., and Bejaoui, T. (December, January 29). Using SQLite Structure Analysis To Retrieve Unsent Messages On WhatsApp Messaging Application. Proceedings of the 2022 International Conference on Smart Applications, Communications and Networking (SmartNets), Palapye, Botswana.","DOI":"10.1109\/SmartNets55823.2022.9993988"},{"key":"ref_174","doi-asserted-by":"crossref","first-page":"355","DOI":"10.1080\/01449291003611326","article-title":"Privacy in instant messaging: An impression management model","volume":"31","author":"Kobsa","year":"2012","journal-title":"Behav. Inf. Technol."},{"key":"ref_175","unstructured":"Mistry, N., and Vora, S. (2023). Modern Forensic Tools and Devices: Trends in Criminal Investigation, John Wiley & Sons."},{"key":"ref_176","doi-asserted-by":"crossref","first-page":"S30","DOI":"10.1016\/j.diin.2018.04.017","article-title":"Reconstructing streamed video content: A case study on YouTube and Facebook Live stream content in the Chrome web browser cache","volume":"26","author":"Horsman","year":"2018","journal-title":"Digit. Investig."},{"key":"ref_177","doi-asserted-by":"crossref","unstructured":"Al-Mousa, M.R., Al-Zaqebah, Q., Al-Ghanim, M., Samara, G., Al-Matarneh, S., and Asassfeh, M. (2022, January 22\u201324). Examining Digital Forensic Evidence for Android Applications. Proceedings of the 2022 International Arab Conference on Information Technology (ACIT), Abu Dhabi, United Arab Emirates.","DOI":"10.1109\/ACIT57182.2022.9994221"}],"container-title":["Information"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/2078-2489\/14\/12\/629\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,10]],"date-time":"2025-10-10T21:29:28Z","timestamp":1760131768000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/2078-2489\/14\/12\/629"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,11,24]]},"references-count":177,"journal-issue":{"issue":"12","published-online":{"date-parts":[[2023,12]]}},"alternative-id":["info14120629"],"URL":"https:\/\/doi.org\/10.3390\/info14120629","relation":{},"ISSN":["2078-2489"],"issn-type":[{"value":"2078-2489","type":"electronic"}],"subject":[],"published":{"date-parts":[[2023,11,24]]}}}