Skip to main content

Jungheum Park

Korea University · Computer Science

About the Lab

Professor Jungheum Park's research lab specializes in digital forensics with a focus on emerging digital evidence sources in complex technological environments. The lab investigates forensic challenges related to cloud storage, network-attached storage (NAS), dashcams, and electronic documents, emphasizing metadata analysis, data reconstruction, and circumstantial evidence collection. A key research direction involves developing systematic methods to track evidence spoliation and ensure comprehensive digital evidence acquisition in cybercrime investigations.

digital forensicsevidence spoliationcloud forensicsmetadata analysisdata reconstruction

Research Overview

Papers
122
Total Citations
595
Papers (5y)
56
Primary Field
Computer Science

Research Output Trend

Figures are computed from collected data and may differ slightly.

Publications per year (5y)
56total
2022
2023
2024
2025
2026
Citations per year (5y)
61total
20222023202420252026

Selected Papers

15
1
Article|28 citations·2012
Forensic analysis techniques for fragmented flash memory pages in smartphones
Jungheum Park, Hyunji Chung, Sangjin Lee
Digital Investigation
Information SystemsComputer Science
2
Article|17 citations·2022
An improved IoT forensic model to identify interconnectivity between things
Jieon Kim, Jungheum Park, Sangjin Lee
SJR Q1Forensic Science International Digital Investigation
Information SystemsComputer Science
3
Article|17 citations·2014
Data fragment forensics for embedded DVR systems
Jungheum Park, Sangjin Lee
Digital Investigation
Information SystemsComputer Science
4
Article|16 citations·2009
Forensic investigation of Microsoft PowerPoint files
Jungheum Park, Sangjin Lee
Digital Investigation
Computer Vision and Pattern RecognitionComputer Science
5
Article|15 citations·2018
TREDE and VMPOP: Cultivating multi-purpose datasets for digital forensics – A Windows registry corpus as an example
Jungheum Park
Digital Investigation
Information SystemsComputer Science
6
Article|9 citations·2021
Your car is recording: Metadata-driven dashcam analysis system
Kukheon Lee, Jonghyun Choi, Jungheum Park, Sangjin Lee
SJR Q1Forensic Science International Digital InvestigationOA

Dashcam as an on-board camera is useful as a source of potential digital evidence not only to reveal the truth of a traffic accident but also to explain the situation of a crime scene as a moving surveillance camera. It stores multimedia data as well as a variety of additional information needed for accident investigation including time, location, speed, accelerometer, etc. Under these circumstances, various studies have been conducted for dashcam forensics, but most of them focused mainly on ex

Information SystemsComputer Science
7
Article|8 citations·2024
Unraveling the dynamics of the cyber threat landscape: Major shifts examined through the recent societal events
Uihyeon Song, G. Hur, Sangjin Lee, Jungheum Park
SJR Q1Sustainable Cities and Society
Information SystemsComputer Science
8
Article|7 citations·2021
Forensic exploration on windows File History
Ji-sung Choi, Jungheum Park, Sangjin Lee
SJR Q1Forensic Science International Digital Investigation
Information SystemsComputer Science
9
Article|6 citations·2022
CATCH: Cloud Data Acquisition through Comprehensive and Hybrid Approaches
Jihyeok Yang, Jieon Kim, Jewan Bang, Sangjin Lee, Jungheum Park
SJR Q1Forensic Science International Digital InvestigationOA

With the development of Internet technology, cloud-based services have improved the availability and usability of resources. Among them, cloud storage services enable users to remotely store, access, or share data over a network. Therefore, digital forensic investigators need to collect data stored in remote servers to comprehensively understand a suspect's activities. Although several well-known commercial digital forensic tools provide features for cloud data acquisition in order to support th

Information SystemsComputer Science
10
Article|5 citations·2023
Discovering spoliation of evidence through identifying traces on deleted files in macOS
Jihun Joun, Sangjin Lee, Jungheum Park
SJR Q1Forensic Science International Digital InvestigationOA

Spoliation of evidence is a critical concern in various crimes such as information leakage, digital sexual crimes, accounting fraud, and copyright infringement. Several traditional digital forensic investigation methods such as recovery, carving, and anti-forensic behavior tracking are used to investigate these crimes. However, as technology has advanced, recovery and carving have become increasingly challenging. Shortly, data recovery will reach its technological limit, and it will be essential

Information SystemsComputer Science
11
Article|5 citations·2019
Reassembling Linux‐based Hybrid RAID
Jong‐Hyun Choi, Jungheum Park, Sangjin Lee
SJR Q2Journal of Forensic Sciences

Network-attached storage (NAS) is a system that uses a redundant array of disks (RAID) to create virtual disks comprising multiple disks and provide network services such as FTP, SSH, and WebDAV. Using these services, the NAS's virtual disks store data about individuals or groups, making them a critical analysis target for digital forensics. Well-known storage manufacturers like Seagate, Synology, and NETGEAR use Linux-based software RAID, and they usually support Berkeley RAID (e.g., RAID 0, 1,

Computer Networks and CommunicationsComputer Science
12
Article|5 citations·2020
Relevance analysis using revision identifier in MS word
Jihun Joun, Hyunji Chung, Jungheum Park, Sangjin Lee
SJR Q2Journal of Forensic Sciences

Electronic documents often contain personal or confidential information, which can be used as valuable evidence in criminal investigations. In the digital investigation, special techniques are required for grouping and screening electronic documents, because it is challenging to analyze relationships between numerous documents in storage devices manually. To this end, although techniques such as keyword search, similarity search, topic modeling, metadata analysis, and document clustering are con

Information SystemsComputer Science
13
Article|4 citations·2022
Multilayered Diagnostics for Smart Cities
Jungheum Park, Hyunji Chung, Joanna F. DeFranco
SJR Q2Computer

The fields of health care, education, culture, and shopping can all be integrated into the core of a smart city to create an infrastructure that allows people to live more conveniently. We must think ahead about cybersecurity, as cyberattacks can threaten the lives of citizens.

Control and Systems EngineeringEngineering
14
Article|4 citations·2023
Chracer: Memory analysis of Chromium-based browsers
Geunyeong Choi, Jewan Bang, Sangjin Lee, Jungheum Park
SJR Q1Forensic Science International Digital InvestigationOA

The web browsing activities of a user provide useful evidence for digital forensic investigations. However, existing analysis techniques that aim to analyze local artifacts (e.g., history and cache) cannot find useful data (e.g., visited URLs) if a user accesses the web using private or secret mode. Hence, string-searching and pattern-matching techniques have been proposed and used to examine user activities from a memory dump. These simple techniques are useful for identifying individual URLs v

Information SystemsComputer Science
15
Article|3 citations·2022
Characterizing client-side caches of audiovisual content sharing services: Findings and suggestions for forensics
Yirang Lim, Min-A Youn, Hyunji Chung, Jungheum Park, Graeme Horsman, Sangjin Lee
SJR Q1Journal of Information Security and Applications
Information SystemsComputer Science

Research Areas

Information SystemsComputer Networks and CommunicationsComputer Vision and Pattern RecognitionAerospace EngineeringArtificial IntelligenceSurgery

Dive deeper into Jungheum Park's research on Nubint

Open this lab's papers in the app to read with AI, summarize, and cite in your writing.