Faber, Łukasz
Loading...
Email Address
Employee
aktywny
Alternative name
Department
Centrum Bezpieczeństwa Informacji
Discipline
Author Profiles
Systemy AGH
3 results
Search Results
Now showing 1 - 3 of 3
Item type:Article, Access status: Open Access , Portable userspace virtual filesystem switch(Wydawnictwa AGH, 2013) Faber, Łukasz; Boryczko, KrzysztofMultiple different filesystems - including disk-based, network, distributed, abstract - are an integral part of every operating system. They are usually written as kernel modules and abstracted to the user via a virtual filesystem switch. In this paper, we analyze the feasibility of reimplementing the virtual filesystem switch as a userspace daemon and applicability of this approach in real-life usage. Such reimplementation will require a way to virtualize processes behavior related to filesystem operations. The problem is non-trivial, as we as-sume limited capabilities of the VFS switch implemented in userspace. We present a layered architecture comprising of a monitoring process, the VFS abstraction and real filesystem implementations. All working in userspace. Then, we evaluate this solution in four areas: portability, feasibility, usability, and performance. Our results demonstrate possible gains in the use of a userspace-based approach with monolithic kernels, but also underline problems that are encountered in this approach.Item type:Article, Access status: Open Access , Agent-based data integration framework(Wydawnictwa AGH, 2014) Faber, ŁukaszCombining data from diverse, heterogeneous sources while facilitating a unified access to it is an important (albeit difficult) task. There are various possibilities of performing it. In this publication, we propose and describe an agent-based framework dedicated to acquiring and processing distributed, heterogeneous data collected from diverse sources (e.g., the Internet, external software, relational, and document databases). Using this multi-agent-based approach in the aspects of the general architecture (the organization and management of the framework), we create a proof-of-concept implementation. The approach is presented using a sample scenario in which the system is used to search for personal and professional profiles of scientists.Item type:Article, Access status: Open Access , Toward RAM forensics supported by machine-learning methods(Wydawnictwa AGH, 2025) Jurczyk, Kamil; Topa, Paweł; Faber, ŁukaszIn this article, we propose an enhancement to the computer forensics technique of using Machine-Learning tools to analyze the contents of RAM in order to extract information that is potentially useful during an investigation. In the specific case presented, the use of the extracted information to generate moreoptimal dictionaries for dictionary cryptanalysis is considered. Increasing user awareness is making cryptanalysis of passwords increasingly difficult for law enforcement. Long and complex passwords are impossible to crack – even when high-performance computing platforms are available. A sensible method of optimization is to look for hints to use a dictionary that contains text phrases more likely to be used in the specific case under attack. Such a hint could be an analysis of RAM taken from a suspect computer. Machine-learning methods can significantly facilitate this task. In this article, we also explore the effectiveness of such an approach and its usefulness in practical applications. We also consider applications of the proposed approach for other purposes, such as OSINT.
