|
Network Forensics
(Ref:
Wikipedia)
Network forensics is
“The use of scientifically proven techniques to collect, identify,
examine, correlate, analyze, and document digital evidence from
multiple, actively processing and transmitting digital sources for
the purpose of uncovering facts related to the planned intent, or
measured success of unauthorized activities meant to disrupt,
corrupt, and or compromise system components as well as providing
information to assist in response to or recovery from these
activities.”
Network forensics is basically about monitoring network traffic,
determining if there is an anomaly in the traffic and whether the
anomaly can be an attack. If it is an attack, the nature of the
attack is also determined. Besides, capability to reconstruct or
play back the network services and activities content such Email,
Web Mail, Web Browsing, Upload or Download, Instant Messaging etc.
is essential. The Important aspects include traffic capture,
preservation, analysis and visualization of the results. Forensic
specialists will understand these results and will invoke an
incident response immediately. An attacker might be able to erase
all log files on a compromised host; network-based evidence might
therefore be the only evidence available for forensic analysis when
dealing with a skilled attacker .
The goal of network forensics is, however,
somewhat different when it is performed by law enforcement rather
than security operations. In this case analysis of captured network
traffic can include tasks such as reassembling and reconstructing
the network or Internet activities like
Email, Web Mail, Web Browsing, Upload or Download, Instant
Messaging, searching for keywords
etc.

Diagram: Network Forensics Process
Decision Group E-Detective Series of Solutions -
CLICK HERE
|
|
| Contact |
 |
| Product and Solutions Sales and Support:
Sales and Marketing:
Email1 - decision@ed-system.sg
Email2 -
vincent@ed-system.sg
Technical Support and Solutions:
Email: decision@ed-system.sg
MSN: wedetective2@hotmail.com
Request for Demo Software? Please contact our
Sales.
|
Interested to become our Distributor, Resellers
etc?
Click Here
|
| |
|