Active traffic capture for network forensics

被引:0
|
作者
Slaviero, Marco [1 ]
Granova, Anna [1 ]
Olivier, Martin [1 ]
机构
[1] Univ Pretoria, ZA-0002 Pretoria, South Africa
来源
关键词
network forensics; active traffic capture; TCP retransmission;
D O I
暂无
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Network traffic capture is an integral part of network forensics, but current traffic capture techniques are typically passive in nature. Under heavy loads, it is possible for a sniffer to miss packets, which affects the quality of forensic evidence. This paper explores means for active capture of network traffic. In particular, it examines how traffic capture can influence the stream under surveillance so that no data is lost. A tool that forces TCP retransmissions is presented. The paper also provides a legal analysis-based on United States and South African laws-which shows that few legal obstacles are faced by traffic capture techniques that force attackers to retransmit data.
引用
收藏
页码:215 / +
页数:4
相关论文
共 50 条
  • [21] Foundation of Network Forensics
    Dobrynin, Andrey V.
    Jacobs, Michael
    Tian, Yuan
    [J]. MACROMOLECULES, 2023, 56 (22) : 9289 - 9296
  • [22] Network forensics analysis
    Corey, V
    Peterman, C
    Shearin, S
    Greenberg, MS
    Van Bokkelen, J
    [J]. IEEE INTERNET COMPUTING, 2002, 6 (06) : 60 - 66
  • [23] Trusted Internet Forensics: design of a network forensics appliance
    Bruschi, D.
    Monga, M.
    Rosti, E.
    [J]. 2005 WORKSHOP OF THE 1ST INTL CONFERENCE ON SECURITY AND PRIVACY FOR EMERGING AREAS IN COMMUNICATION NETWORKS - SECURECOMM, 2005, : 35 - 37
  • [24] The active traffic control mechanism for layered multimedia multicast in active network
    Kang, S
    Youn, HY
    Lee, Y
    Lee, D
    Kim, M
    [J]. 8TH INTERNATIONAL SYMPOSIUM ON MODELING, ANALYSIS AND SIMULATION OF COMPUTER AND TELECOMMUNICATION SYSTEMS, PROCEEDINGS, 2000, : 325 - 332
  • [25] Poster Abstract: "Sensing" the IoT Network: Ethical Capture of Domestic IoT Network Traffic
    Popescu, Diana Andreea
    Safronov, Vadim
    Yadav, Poonam
    Kolcun, Roman
    Mandalari, Anna-Maria
    Haddadi, Hamed
    McAuley, Derek
    Mortier, Richard
    [J]. PROCEEDINGS OF THE 17TH CONFERENCE ON EMBEDDED NETWORKED SENSOR SYSTEMS (SENSYS '19), 2019, : 406 - 407
  • [26] Applied research of active network to control network traffic in virtual battlefield
    Lee, WG
    Lee, JK
    [J]. COMPUTATIONAL SCIENCE AND ITS APPLICATIONS - ICCSA 2004, PT 1, 2004, 3043 : 254 - 261
  • [27] Active Learning for Network Traffic Classification: A Technical Study
    Shahraki, Amin
    Abbasi, Mahmoud
    Taherkordi, Amir
    Jurcut, Anca Delia
    [J]. IEEE TRANSACTIONS ON COGNITIVE COMMUNICATIONS AND NETWORKING, 2022, 8 (01) : 422 - 439
  • [28] Active learning approach to label network traffic datasets
    Guerra Torres, Jorge L.
    Catania, Carlos A.
    Veas, Eduardo
    [J]. JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2019, 49
  • [29] Internet Traffic Characterization based on Active Network Measurement
    Liu, Jun
    Chen, Bochuan
    [J]. 2010 6TH INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS NETWORKING AND MOBILE COMPUTING (WICOM), 2010,
  • [30] A Real-Time Streaming System for Customized Network Traffic Capture
    Costin, Adrian-Tiberiu
    Zinca, Daniel
    Dobrota, Virgil
    [J]. SENSORS, 2023, 23 (14)