Network forensics: Notions and challenges

Ahmad Almulhem*

*Corresponding author for this work

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

30 Scopus citations

Abstract

Network forensics is an extension of the network security model which traditionally emphasizes prevention and detection of network attacks. It addresses the need for dedicated investigative capabilities in the current model to allow investigating malicious behavior in networks. It helps organizations in investigating outside and inside network attacks. It is also important for law enforcement investigations. In this paper, various aspects of network forensics are reviewed as well as related technologies and their limitations. Also, challenges in deploying a network forensics infrastructure are highlighted.

Original languageEnglish
Title of host publicationIEEE International Symposium on Signal Processing and Information Technology, ISSPIT 2009
Pages463-466
Number of pages4
DOIs
StatePublished - 2009

Publication series

NameIEEE International Symposium on Signal Processing and Information Technology, ISSPIT 2009

Keywords

  • Computer forensics
  • Computer security
  • Network forensics
  • Network security

ASJC Scopus subject areas

  • Information Systems
  • Signal Processing

Fingerprint

Dive into the research topics of 'Network forensics: Notions and challenges'. Together they form a unique fingerprint.

Cite this