Introduction to network forensics

The topics being taught today that is mainly about gaining evidence, data source, and OSCAR investigating method.

Network forensics is a part of digital forensics with a focus to monitor and analyze network traffic with 3 main purposes which are intrusion prevention, information gathering, legal evidence. There are some differences between computer forensics and network forensics, like different type of evidences, different data, etc.

OSCAR investigating method:
1.Obtain Information
2.Strategize
3.Collect Evidence
4.Analyze 
5. Report

TAARA investigation method:
1. Trigger
2. Acquire
3. Analysis
4. Report
5. Action

Leave a Reply

Your email address will not be published. Required fields are marked *