COMPUTER NETWORKING

NETWORK SECURITY

INTRODUCTION

Question [CLICK ON ANY CHOICE TO KNOW THE RIGHT ANSWER]
What do companies get after a network forensic?
A
A report telling them what happened and how to put it right
B
A report telling what happened
C
A report telling them they had a virus
D
A report telling them that their data has been stolen
Explanation: 

Detailed explanation-1: -“Network forensics is a science that centers on the discovery and retrieval of information surrounding a cybercrime within a networked environment. Common forensic activities include the capture, recording and analysis of events that occurred on a network in order to establish the source of cyberattacks.”

Detailed explanation-2: -The major goal of network forensics is to collect evidence. It tries to analyze network traffic data, which is collected from different sites and different network equipment, such as firewalls and IDS. In addition, it monitors on the network to detect attacks and analyze the nature of attackers.

Detailed explanation-3: -The general phases of the forensic process are: the identification of potential evidence; the acquisition of that evidence; analysis of the evidence; and production of a report.

Detailed explanation-4: -Data sources. Granularity in the data. Data integrity. Privacy issues. Data analysis.

There is 1 question to complete.