From the course: Network Forensics

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Goals of network forensics

Goals of network forensics

From the course: Network Forensics

Start my 1-month free trial

Goals of network forensics

- [Instructor] Network forensics is a specialization of digital forensics which encompasses the investigation of devices, storing, processing, and exchanging digital data. It focuses on the data exchange aspect of digital forensics. A majority of our computer applications rely on connectivity to the internet, and a significant part of network forensics involves analysis of traffic generated by these network applications. The ultimate goal is still the same. Instead of digital forensics, to produce evidence to prove or disprove a claim. One of the objectives necessary to operationalize this is the preservation of network data. Let's say that we just had a data breach incident. A government sponsor attacker successfully infiltrated a corporate network and stole the personally identifiable information or PII of tens of thousands of employees. Network data is transient, organizations typically don't store their network traffic in it's entirety and replace old log files with new ones. If…

Contents