کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
456548 695733 2008 9 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
PyFlag – An advanced network forensic framework
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر شبکه های کامپیوتری و ارتباطات
پیش نمایش صفحه اول مقاله
PyFlag – An advanced network forensic framework
چکیده انگلیسی

Network forensics is an investigation technique looking at the network traffic generated by a system. PyFlag is a general purpose, open source, forensic package which merges disk forensics, memory forensics and network forensics.This paper describes the PyFlag architecture and in particular how that is used in the network forensics context. The novel processing of HTML pages is described and the PyFlag page rendering is demonstrated. PyFlag's novel processing of complex web applications such as Gmail and other web applications is described. Finally PyFlag's report generation capabilities are demonstrated.

ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Digital Investigation - Volume 5, Supplement, September 2008, Pages S112–S120
نویسندگان
,