{"id":"W2544541072","doi":"10.1109/passat/socialcom.2011.68","title":"Comparative Analysis of Volatile Memory Forensics: Live Response vs. Memory Imaging","year":2011,"lang":"en","type":"article","venue":"","topic":"Digital and Cyber Forensics","field":"Computer Science","cited_by":40,"is_retracted":false,"has_abstract":true,"ca_institutions":"Concordia University of Edmonton","funders":"Concordia University; Concordia University of Edmonton","keywords":"Computer science; Digital forensics; Resource (disambiguation); Non-volatile memory; Response time; Cache; Digital evidence; Computer security; Data science; Computer hardware; Operating system","routes":{"ca_aff":true,"ca_fund":true,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.002270913,0.0004472561,0.0005429141,0.002696621,0.000609013,0.0009387835,0.0008269004,0.0009865316,0.003024413],"category_scores_gemma":[0.01953573,0.0002261293,0.0003418723,0.0008303616,0.00103686,0.001868478,0.001158558,0.000546953,0.0005101211],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.000296048,"about_ca_system_score_gemma":0.0002515158,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.0004692725,"about_ca_topic_score_gemma":0.0006799903,"domain_scores_codex":[0.9982333,0.0006671956,0.0001026234,0.0001932728,0.0006127821,0.0001908485],"domain_scores_gemma":[0.9838324,0.009510613,0.001583513,0.001954347,0.002794962,0.0003241182],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"design_other","study_design_gemma":"bench_or_experimental","study_design_scores_codex":[0.01490859,0.001551844,0.04689062,0.002021433,0.0003886946,0.002475917,0.003811935,0.0221612,0.3998619,0.008388462,0.002510978,0.4950283],"study_design_scores_gemma":[0.0002947359,0.009264985,0.1127169,0.0003449448,0.0006060144,0.009873907,0.01038036,0.1111783,0.7253871,0.0106453,0.008947029,0.0003604639],"study_design_candidate":"bench_or_experimental","study_design_consensus":null,"genre_codex":"empirical","genre_gemma":"empirical","genre_scores_codex":[0.9555081,0.001138878,0.03607662,0.0002089672,0.00006390375,0.0001846057,0.0003148949,0.0004977842,0.006006243],"genre_scores_gemma":[0.9857745,0.000304047,0.01236597,0.00006576512,0.00003496115,0.00005012325,0.0002540429,0.00007223809,0.001078249],"genre_candidate":"empirical","genre_consensus":"empirical","teacher_disagreement_score":0.003024413,"threshold_uncertainty_score":0.01200986,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.02792996290983028,"score_gpt":0.2438497470239563,"score_spread":0.215919784114126,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}