Cloud Forensic System Distributed Evidence Analysis

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Traditional digital forensic investigation methods are hindered by the need for substantial computing resources and limited global availability of experienced investigators, leading to delays in analyzing digital evidence, which can hinder the apprehension of individuals involved in crimes like child exploitation due to the rapid dissemination of digital data.

Innovation Solution

A cloud-based forensic investigation system that employs agent computing devices for data collection and processing, managed by a central computing device via a data communication network, allowing for distributed digital forensic workflows and prioritization of investigations, with the ability to allocate resources based on case urgency.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Loss of time

If traditional digital forensic investigation methods are used, then computing resources can be utilized locally, but delays in analyzing digital evidence occur due to the need to send storage devices to forensic labs

Engineering Contradiction:
Improvedelay in analyzing digital evidenceVSAvoidneed to send storage devices to forensic labs
Core Design Contradiction:
Loss of timeVSEase of operation

Solution Approach 1:

The patent replaces the mechanical process of physically transporting storage devices to forensic labs with a cloud-based digital system. The central computing device receives digital forensic data via data communication networks and distributes it to multiple agent computing devices for parallel processing, eliminating the need for physical transport while enabling timely analysis.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The patent divides the forensic investigation process into segmented components: a central computing device that manages the workflow and multiple agent computing devices that perform specific analysis tasks. This segmentation allows distributed processing of digital evidence, reducing the time required compared to centralized lab processing.

Inventive Principle:
Principle #1Segmentation

2Productivity

If more computing resources are allocated to digital forensic investigations, then analysis capability improves, but the complexity of the system increases

Engineering Contradiction:
Improvedigital forensic analysis capabilityVSAvoidsystem complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The patent creates a universal cloud-based platform where the central computing device can allocate agent computing devices based on priority status of investigations. This multi-functional system handles various types of digital forensic analyses through standardized interfaces, improving productivity without proportionally increasing complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system dynamically allocates computing resources based on the priority status of forensic investigations. The central computing device can adjust the number and type of agent computing devices assigned to each case, allowing the system to scale resources up or down as needed while maintaining manageable complexity through automated resource management.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS11847204B2Systems and methods for cloud-based management of digital forensic evidence
Publication Date: 2023.12.19 ROYAL BANK OF CANADA
  • US11847204B2 patent drawing
  • US11847204B2 patent drawing
  • US11847204B2 patent drawing

AI summary

Systems and methods for cloud-based management of digital forensic evidence and, in particular, to systems and methods for enabling cloud-based digital forensic investigations.