March 2018
Intermediate to advanced
626 pages
17h 32m
English
Network forensics is quite the same as what you see in crime scene investigation dramas. Something is going wrong; so, you go to the crime scene (this is your network) and look for evidence (the traces that are left in the network).
What you look for are the things that do not match the crime scene (your network), things that are left behind (unusual traffic patterns), fingerprints, and DNA (patterns that can identify the attacker).
In the following recipes, we will look at the details of various types of attacks and abnormalities that can indicate that a crime was committed, and we will see how to isolate the problems and solve them.
Some common attacks that can come from the network are:
Read now
Unlock full access