New developments in network forensics - tools and techniques


Autoria(s): Hunt, Ray
Contribuinte(s)

[unknown]

Data(s)

01/01/2012

Resumo

Network forensics is a branch of digital forensics which has evolved recently as a very important discipline used in monitoring and analysing network traffic-particularly for the purposes of tracing intrusions and attacks. This paper presents an analysis of the tools and techniques used in network forensic analysis. It further examines the application of network forensics to vital areas such as malware and network attack detection; IP traceback and honeypots; and intrusion detection. Further, the paper addresses new and emerging areas of network forensic development which include critical infrastructure forensics, wireless network forensics, as well as its application to social networking. © 2012 IEEE.

Identificador

http://hdl.handle.net/10536/DRO/DU:30052918

Idioma(s)

eng

Publicador

IEEE

Relação

http://dro.deakin.edu.au/eserv/DU:30052918/evid-iconconf-2012.pdf

http://dro.deakin.edu.au/eserv/DU:30052918/hunt-newdevelopments-2012.pdf

http://dro.deakin.edu.au/eserv/DU:30052918/hunt-newdevelpeerreviewspcfcevid-2012.pdf

http://dx.doi.org/10.1109/ICON.2012.6506587

Palavras-Chave #critical infrastructure and botnet forensics #honeypot #intrusion detection #IP traceback #malware #network and digital forensics #network forensic tools
Tipo

Conference Paper