|
|
ForNet - A Distributed Network Forensics System |
| Speaker | Dr.
Nasir Memon Professor, Polytechnic University |
| Time/Location |
25 Mar 2005,11:30
to 1:00 PM |
| Abstract |
In this talk we introduce ForNet, a distributed network logging mechanism to aid digital forensics over wide area networks. We describe the need for such a system, review related work, present the architecture of the system, and discuss key research issues. We then describe the design and implementation of a prototype system that processes packets in a network and is able to attribute query payloads to source and destination hosts in the local network. It is based on a novel data structure called a Hierarchical Bloom Filter (HBF). An HBF allows us to form compact digests of payloads and provide probabilistic answers to membership queries. Our system is robust against certain packet transformations and flexible enough to be used if the query string is spread across several packets. Performance analysis and experimental results of the prototype system are also presented demonstrating its practicality and efficacy. |
| Biography | Dr. Nasir Memon is a Professor in the computer science department at Polytechnic University, New York. Prof. Memon's research interests include Data Compression, Computer and Network Security and Multimedia Communication, Computing and Security. He has published more than 150 articles in journals and conference proceedings and holds 4 patents in image compression and security. He has been the principal investigator on several funded research and education projects, sponsored by government agencies like NSF, AFOSR, AFRL as well as private industry such as HP, Intel, Panasonic and Mitsubishi. He was a visiting faculty at Hewlett-Packard Research Labs during the academic year 1997-98. He has won several awards including the NSF CAREER award and the Jacobs Excellence in Education award. Prof. Memon was an associate editor for IEEE Transactions on Image Processing from 1999-2002. He is currently an associate editor for the IEEE Transactions on Information Security and Forensics, ACM Multimedia Systems Journal and the Journal of Electronic Imaging. He is was a guest editor for the IEEE Transactions on Signal Processing special issue on Signal Processing for Data Hiding in Digital Media & Secure Content Delivery, for the ACM Multimedia Systems Journal special issue on Multimedia Security, for the Signal Processing Journal special issue on Security of Data Hiding Technologies, and for the European Journal on Applied Signal Processing special issue on Multimedia Security and Rights Management. |
| Map/Directions |
From I95, exit at
Glades Rd (Exit 45) and drive east, staying in left lane. Drive 1/2
mile and left at light (NW 10th Ave). This is Broward Blvd on the campus.
**PARKING STRICTLY ENFORCED** Do not park in lots requiring decals.
Tickets will be issued. There is parking information booth on the right
after entering campus. |