Printer Friendly
Dictionary, Encyclopedia and Thesaurus - The Free Dictionary
3,589,385,837 visitors served.
forum Join the Word of the Day Mailing List For webmasters
?
Dictionary/
thesaurus
Medical
dictionary
Legal
dictionary
Financial
dictionary
Acronyms
 
Idioms
Encyclopedia
Wikipedia
encyclopedia
?

computer forensics
(redirected from network forensics)

   Also found in: Wikipedia 0.01 sec.
computer forensics
The investigation of a computer system believed to be involved in cybercrime. Forensic software provides a variety of tools for investigating a suspect PC. Such programs may include a function that copies the entire hard drive to another system for inspection, allowing the original to remain unaltered.

Another utility compares file extensions to the data content in order to determine if files have been camouflaged with phony file extensions. For example, an image file might be renamed as a text document and vice versa.

Network Forensics
In order to identify attacks, "network forensics" deals with the capture and inspection of packets passing through a selected node in the network. Packets can be inspected on the fly or stored on disk for later analysis. See forensically clean, slack space, write blocker, file wipe, IDS, Internet forensics and security event management software.

NIST Phases

The National Institute of Standards and Technology "Guide to Integrating Forensic Techniques into Incident Responses" covers four phases, which are briefly summarized below. For the complete 121-page NIST publication, download draft SP 800-86 at http://csrc.nist.gov/publications/nistpubs.

1 - Collection: Identify, label, record and acquire data from possible sources, while preserving the integrity of the data.

2 - Examination: Use manual and automated methods to assess and extract data of particular interest, while preserving the integrity of the data.

3 - Analysis: Use legally justifiable methods and techniques to derive useful information.

4 - Reporting: Describe actions used, explain how tools and procedures were selected, determine what other actions need to be performed, including forensic examination of additional data sources, securing identified vulnerabilities and improving existing security controls. Recommend improvements to policies, guidelines, procedures, tools and other aspects of the forensic process.
computer forensics [kəm¦pyüd·ər fə′ren·ziks]
(forensic science)
The study of evidence from attacks on computer systems in order to learn what has occurred, how to prevent it from recurring, and the extent of the damage.


How to thank TFD for its existence? Tell a friend about us, add a link to this page, add the site to iGoogle, or visit webmaster's page for free fun content.
?Page tools
Printer friendly
Cite / link
Feedback
Mentioned in?  References in periodicals archive?   Encyclopedia browser?   Full browser?
No references found
 
The solutions displayed will cover a wide spectrum of industries including (Cyber Forensics, Computer Forensics, Network Forensics, Finance and Banking, IT Security Consulting, ISO 27001, and Education) as well as unique security tools for the consumer market.
Students should be familiar with networking and A+ and Network+ fundamentals to understand chapter topics that include: recovery of image files, network forensics, how to process crime and incident scenes, digital evidence controls, working with Windows and DOS systems, data acquisition, e-mail investigation, computer forensics analysis, and the responsibilities of an expert witness and reporter of investigation results.
This year we are doing a similar set of reviews with the exception that the market has matured sufficiently to allow us to break the genre into two groups: media forensics and network forensics.
 
 
Network for Psychiatric Nursing Research
Network for Regional Healthcare Improvement
Network for Research and Evaluation on Education and Development
Network for Research in Jewish Education
Network for Sub-Saharan Africa
Network for Teaching Information Society
Network for Thai Pro Football
Network for the Defence of Independent Media in Africa
Network for the Detection of Atmospheric Composition Change
Network for the Detection of Stratospheric Change
Network for the Development of Agricultural Cooperatives
Network for the Genetic Improvement of Cowpea for Africa
Network for the Improvement of Concrete Construction
Network for the Needy
Network for the Promotion of Asian Cinema
Network for the Study of Religion in Contemporary Europe
Network for Training Entrepreneurship
Network for Translational Research in Optical Imaging
Network for Ultraviolet Astrophysics
Network for Water and Sanitation
Network for Women Entrepreneurs
Network for Women in Leadership
Network for Youth Advancement and Peace Foundation
Network Forecasting System
network forensics
Network Foundation Protection
Network Frame Synchronization
Network Front-End
Network Gateway
Network Governance Committee
Network Graphic Annunciator
Network Graphs for Computer Epidemiologists
Network Grid
Network Grid Model
Network Group Controller
Network Gulf Information Technology
Network Hardware Support Group
Network Header
Network Health Exchange
network health protection
network hosting
Network Housing Group Limited
Network hub
Network Hub Unit
Network I/Os Per Second
Network Identification
Network Identification Code
Network Identifier
network identity
 
Encyclopedia
?

Terms of Use | Privacy policy | Feedback | Copyright © 2012 Farlex, Inc.
Disclaimer
All content on this website, including dictionary, thesaurus, literature, geography, and other reference data is for informational purposes only. This information should not be considered complete, up to date, and is not intended to be used in place of a visit, consultation, or advice of a legal, medical, or any other professional.