PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
January 1, 2015International Journal of Security and Networks72 citations

Network forensics analysis using Wireshark

View Full Paper
VNVivens NdatinyaZXZhifeng XiaoVMVasudeva Rao Manepalli

Key Points

Key points are not available for this paper at this time.

Abstract

The number and types of attacks against networked computer systems have raised the importance of network security. Today, network administrators need to be able to investigate and analyse the network traffic to understand what is happening and to deploy immediate response in case of an identified attack. Wireshark proves to be an effective open source tool in the study of network packets and their behaviour. In this regard, Wireshark can be used in identifying and categorising various types of attack signatures. The purpose of this paper is to demonstrate how Wireshark is applied in network protocol diagnosis and can be used to discover traditional network attacks such as port scanning, covert FTP and IRC channels, ICMP-based attacks, BitTorrent-driven denial service, and etc. In addition, the case studies in this paper illustrate the idea of using Wireshark to identify new attack vectors.

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Ndatinya et al. (2015) studied this question.

synapsesocial.com/papers/6a230887f143dd0089a97382https://doi.org/10.1504/ijsn.2015.070421
Ask AI
Helpful
Bookmark
Share
View Full Paper