E3S Web of Conferences (Jan 2023)

Internet platform for analyzing computer memory of Windows operating systems for conducting information security investigations

  • Tretyak Michael,
  • Cherckesova Larisa,
  • Korochentsev Denis,
  • Revyakina Elena,
  • Popov Alexey

DOI
https://doi.org/10.1051/e3sconf/202340203027
Journal volume & issue
Vol. 402
p. 03027

Abstract

Read online

Within the framework of this article, an analysis of the dynamics of the growth of information security incidents identified in companies by specialists of the department of monitoring and responding to information security threats was carried out. The study examined the problems faced by information security specialists in companies, and what tools they use to perform their tasks. Countering cyberattacks requires timely response to a recorded incident and accuracy in its investigation. As part of this scientific work, an automated digital platform was developed for analyzing RAM dumps of Windows operating systems for conducting investigations in the field of information security. This tool will provide a digital forensics specialist with additional time to investigate information security incidents by minimizing routine tasks and a centralized information processing location.