About

Bradley Schatz, B.Sc. (Computer Science)

Bradley has recently completed his Ph.D. dissertation in the area of digital evidence and computer forensics at the Information Security Institute, QUT, and holds a bachelor's degree in computer science from the University of Queensland. Bradley's research in computer forensics has been presented at international conferences and published in peer reviewed journals. He has lectured on the subject at the Queensland University of Technology.

In both legal and commercial contexts, Bradley has provided clients with investigation, analysis and reporting on technical evidence matters. As a consulting expert, he has assisted in bringing a number of civil and criminal defence matters to successful resolutions.

Bradley has over 12 years of experience in software engineering, network security, and computer forensics, in both public and private sectors.

Presentations

Bradley has presented computer forensics related material in the following forums:

'Recent developments in volatile memory forensics', (2007), Computer Security Day, Brisbane.[PDF]

'Network Forensics: Capturing and Analysing Network Activity', (2007), Royal Australian Airforce, Canberra

Publications

The following are peer reviewed publications which Bradley has authored or co-written:

Schatz, B. (2007) 'Digital evidence: representation and assurance' (Ph.D. thesis), Queensland University of Technology, Brisbane. [PDF]

Schatz, B. (2007) 'BodySnatcher: towards reliable volatile memory acquisition by software', Digital Investigation, 4 (Supplement 1), pp. 126-134. (2007 Digital Forensics Research Workshop, Pittsburgh, PA.) [PDF]

Schatz, B., Mohay, G. and Clark, A., (2006) 'Establishing temporal provenance of computer event log evidence' ,Digital Investigation, 3 (Supplement 1), pp. 89-107. (2006 Digital Forensics Research Workshop, West Lafayette, Indiana) [PDF]

Schatz, B., Clark, A., (2006) 'An information architecture for digital evidence integration' Proceedings of the 2006 Australian Security Response Team Annual Conference (AUSCERT 2006), Gold Coast, Australia.[PDF]

S. Andersson, A. J. Clark, G. Mohay, B. Schatz and J. Zimmermann. Framework for Detecting Network-Based Code Injection Attacks Targeting Windows and UNIX. In proceedings of Twenty-first Annual Computer Security Applications Conference, pages 41--50. IEEE Computer Society, December 2005. ISBN: 0-7695-2461-3.

Schatz, B., Mohay, G. and Clark, A., (2004) 'Generalising Event Forensics Across Multiple Domains' Proceedings of the 2004 Australian Computer Network and Information Forensics Conference (ACNIFC 2004), Perth, Australia. [PDF]

Schatz, B., Mohay, G. and Clark, A., (2005) 'Generalising Event Correlation Across Multiple Domains', Journal of Information Warfare, vol 4, iss 1, pp. 69-79.

Schatz, B., Mohay, G. and Clark, A. (2004) 'Rich Event Representation for Computer Forensics', Proceedings of the 2004 Asia Pacific Industrial Engineering and Management Systems (APIEMS 2004), Brisbane, Australia.