A Novel Approach to Network Forensic Analysis: Combining Packet Capture Data and Social Network Analysis

نویسندگان

چکیده

Log data from computers used for network forensic analysis is ineffective at identifying specific security threats. limitations include the difficulty in reconstructing communication patterns between nodes and inability to identify more advanced By combining traditional log methods with a effective combination of approaches, comprehensive view can be achieved. This combined approach then help potential threats effectively. It's difficult determine benefits Packet Capture (PCAP) Social Network Analysis (SNA) when performing forensics. article proposes new that combines PCAP social overcome some methods. The purpose this discovery improve accuracy by provide patterns. forensics, which pcap analysis, provides results. analyze traffic, conversation statistics, protocol distribution, packet content round-trip times. maps identifies most influential key players within network. efficiently captures analyzes packets, SNA insight into relationships devices on

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

analysis of power in the network society

اندیشمندان و صاحب نظران علوم اجتماعی بر این باورند که مرحله تازه ای در تاریخ جوامع بشری اغاز شده است. ویژگیهای این جامعه نو را می توان پدیده هایی از جمله اقتصاد اطلاعاتی جهانی ، هندسه متغیر شبکه ای، فرهنگ مجاز واقعی ، توسعه حیرت انگیز فناوری های دیجیتال، خدمات پیوسته و نیز فشردگی زمان و مکان برشمرد. از سوی دیگر قدرت به عنوان موضوع اصلی علم سیاست جایگاه مهمی در روابط انسانی دارد، قدرت و بازتولید...

15 صفحه اول

Wide Area Network Packet Capture and Analysis

We describe a system to record and analyze ‘‘raw’’ Frame Relay and point-to-point T-1 packets. The data are captured by ‘‘eavesdropping’’ on the HDLC transmit and receive lines between the router and CSU/DSU. Analysis of the data provides circuit and application utilization information on a one-second or shorter time scale. Routine and custom reports are accessible through Web interfaces to pro...

متن کامل

A Chance Constraint Approach to Multi Response Optimization Based on a Network Data Envelopment Analysis

In this paper, a novel approach for multi response optimization is presented. In the proposed approach, response variables in treatments combination occur with a certain probability. Moreover, we assume that each treatment has a network style. Because of the probabilistic nature of treatment combination, the proposed approach can compute the efficiency of each treatment under the desirable reli...

متن کامل

Window Network Data Envelopment Analysis: An Application to Investment Companies

In this study, the window network data envelopment analysis (WNDEA) model will be proposed, that is capable to be used in the presence of panel data. Additionally, the proposed model is applied to evaluate the dynamic efficiency of 5 investment companies in Tehran stock exchange during the period from 2013 to 2017.

متن کامل

Network Data Envelopment Analysis: Application to Gas Companies in Iran

Energy, due to its increasing usage in various broad areas has been maintained as a vital factor in economic growth and development of societies. Meanwhile, natural gas is considered as one of the most important energy sources. Therefore, the efficiency and the productivity of the gas companies are crucial to be assessed. Numerous examples from industrial multistage processes including internal...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

ژورنال

عنوان ژورنال: International Journal of Advanced Computer Science and Applications

سال: 2023

ISSN: ['2158-107X', '2156-5570']

DOI: https://doi.org/10.14569/ijacsa.2023.0140353