Home Page
Decision Group - Taiwan - Singapore - Germany - USA
Network Forensics (Ref: Wikipedia)

Network forensics is “The use of scientifically proven techniques to collect, identify, examine, correlate, analyze, and document digital evidence from multiple, actively processing and transmitting digital sources for the purpose of uncovering facts related to the planned intent, or measured success of unauthorized activities meant to disrupt, corrupt, and or compromise system components as well as providing information to assist in response to or recovery from these activities.”

 

Network forensics is basically about monitoring network traffic, determining if there is an anomaly in the traffic and whether the anomaly can be an attack. If it is an attack, the nature of the attack is also determined. Besides, capability to reconstruct or play back the network services and activities content such Email, Web Mail, Web Browsing, Upload or Download, Instant Messaging etc. is essential. The Important aspects include traffic capture, preservation, analysis and visualization of the results. Forensic specialists will understand these results and will invoke an incident response immediately. An attacker might be able to erase all log files on a compromised host; network-based evidence might therefore be the only evidence available for forensic analysis when dealing with a skilled attacker.

 

The goal of network forensics is, however, somewhat different when it is performed by law enforcement rather than security operations. In this case analysis of captured network traffic can include tasks such as reassembling and reconstructing the network or Internet activities like Email, Web Mail, Web Browsing, Upload or Download, Instant Messaging, searching for keywords etc.

Diagram: Network Forensics Process

Decision Group E-Detective Series of Solutions - CLICK HERE

 

Contact
Product and Solutions Sales and Support:

Sales and Marketing:

Email1 - decision@ed-system.sg

Email2 - vincent@ed-system.sg

Technical Support and Solutions:

Email: decision@ed-system.sg

MSN: wedetective2@hotmail.com

Request for Demo Software? Please contact our Sales.

Interested to become our Distributor, Resellers etc? Click Here
 
Site Map Decision Group.2009.