메뉴 건너뛰기




Volumn 7, Issue 1-2, 2010, Pages 14-27

Network forensic frameworks: Survey and research challenges

Author keywords

Attribution; Data fusion; Distributed systems; Honeypots; Incident response; Network forensics; NFATs; Soft computing; Traceback

Indexed keywords

DATA FUSION; DISTRIBUTED COMPUTER SYSTEMS; FORENSIC SCIENCE; NETWORK SECURITY; SOFT COMPUTING; SURVEYS;

EID: 78449249325     PISSN: 17422876     EISSN: None     Source Type: Journal    
DOI: 10.1016/j.diin.2010.02.003     Document Type: Article
Times cited : (181)

References (87)
  • 4
    • 78449249981 scopus 로고    scopus 로고
    • Argus
    • Argus, http://www.qosient.com/argus.
  • 7
    • 4243105024 scopus 로고    scopus 로고
    • The discipline of Internet forensics
    • H. Berghel The discipline of Internet forensics Communications of the ACM 46 8 2003 15 20
    • (2003) Communications of the ACM , vol.46 , Issue.8 , pp. 15-20
    • Berghel, H.1
  • 8
    • 78449248134 scopus 로고    scopus 로고
    • Bro, http://www.bro-ids.org.
    • Bro
  • 9
    • 33748968514 scopus 로고    scopus 로고
    • Forensic computing: Developing a conceptual approach for an emerging academic discipline
    • July
    • Broucek V, Turner P. Forensic computing: developing a conceptual approach for an emerging academic discipline. In: Fifth Australian Security Research Symposium; July 2001.
    • (2001) Fifth Australian Security Research Symposium
    • Broucek, V.1    Turner, P.2
  • 17
    • 78449266049 scopus 로고    scopus 로고
    • DDOS attackers continue hitting Twitter, Facebook, Google
    • DDOS attackers continue hitting Twitter, Facebook, Google, http://www.computerworld.com/s/article/9136402/.
  • 19
    • 78449262395 scopus 로고    scopus 로고
    • Flow-tools
    • Flow-tools, http://www.splintered.net/sw/flow-tools.
  • 22
    • 78449246660 scopus 로고    scopus 로고
    • Infinistream
    • Infinistream, http://www.netscout.com/Products/infinistream.asp.
  • 23
    • 78449244074 scopus 로고    scopus 로고
    • Iris
    • Iris, http://www.eeye.com/Iris.
  • 24
    • 78449233880 scopus 로고    scopus 로고
    • ISO/IEC 27001. Information technology (security techniques, information security management, requirements)
    • ISO/IEC 27001. Information technology (security techniques, information security management, requirements), http://www.iso.org/iso/catalogue-detail.htm? csnumber=42103 ; 2005.
  • 27
    • 69249213464 scopus 로고    scopus 로고
    • Network forensics based on fuzzy logic and expert system
    • N. Liao, S. Tian, and T. Wang Network forensics based on fuzzy logic and expert system Computer Communications 32 17 Nov. 2009 1881 1892
    • (2009) Computer Communications , vol.32 , Issue.17 , pp. 1881-1892
    • Liao, N.1    Tian, S.2    Wang, T.3
  • 32
    • 1542492748 scopus 로고    scopus 로고
    • Identifying significant features for network forensic analysis using artificial intelligent techniques
    • S. Mukkamala, and A.H. Sung Identifying significant features for network forensic analysis using artificial intelligent techniques International Journal of Digital Evidence 1 4 2003
    • (2003) International Journal of Digital Evidence , vol.1 , Issue.4
    • Mukkamala, S.1    Sung, A.H.2
  • 33
    • 78449260629 scopus 로고    scopus 로고
    • Master's thesis. Department of Computing Studies, Arizona State University
    • Nagesh A. Distributed network forensics using JADE mobile agent framework. Master's thesis. Department of Computing Studies, Arizona State University; 2007, http://www.technology.asu.edu/files/documents/tradeshow/Dec06/ asha-nagesh-report.pdf
    • (2007) Distributed Network Forensics Using JADE Mobile Agent Framework
    • Nagesh, A.1
  • 34
    • 78449262766 scopus 로고    scopus 로고
    • Nessus
    • Nessus, http://www.nessus.org.
  • 35
    • 78449236680 scopus 로고    scopus 로고
    • NetDetector
    • NetDetector, http://www.niksun.com.
  • 36
    • 78449259144 scopus 로고    scopus 로고
    • NetFlow
    • NetFlow, http://www.cisco.com/web/go/netflow.
  • 37
    • 78449234274 scopus 로고    scopus 로고
    • Network forensics and digital time travel
    • Network forensics and digital time travel, http://www.technewsworld.com/ story/68651.html.
  • 38
    • 78449243894 scopus 로고    scopus 로고
    • netForensics security compliance management
    • netForensics security compliance management, http://www.netforensics.com/ compliance.
  • 39
    • 78449236484 scopus 로고    scopus 로고
    • NetIntercept
    • NetIntercept, http://www.sandstorm.net.
  • 40
    • 78449231518 scopus 로고    scopus 로고
    • NetWitness
    • NetWitness, http://www.netwitness.com.
  • 41
    • 78449253870 scopus 로고    scopus 로고
    • NetworkMiner
    • NetworkMiner, http://networkminer.sourceforge.net.
  • 42
    • 78449254431 scopus 로고    scopus 로고
    • NfDump
    • NfDump, http://nfdump.sourceforge.net/.
  • 43
    • 78449255859 scopus 로고    scopus 로고
    • Ngrep
    • Ngrep, http://ngrep.sourceforge.net.
  • 47
    • 78449238568 scopus 로고    scopus 로고
    • Nmap
    • Nmap, http://www.nmap.org.
  • 48
    • 78449247931 scopus 로고    scopus 로고
    • Ntop
    • Ntop, http://www.ntop.org.
  • 49
    • 78449253692 scopus 로고    scopus 로고
    • OmniPeek
    • OmniPeek, http://www.wildpackets.com.
  • 50
    • 78449248676 scopus 로고    scopus 로고
    • P0f
    • P0f, http://www.lcamtuf.coredump.cx/p0f.shtml.
  • 51
    • 78449255134 scopus 로고    scopus 로고
    • PADS
    • PADS, http://passive.sourceforge.net.
  • 53
    • 33845421705 scopus 로고    scopus 로고
    • Network forensics and the inside job
    • S. Perry Network forensics and the inside job Network Security 2006 2006 11 13
    • (2006) Network Security , vol.2006 , pp. 11-13
    • Perry, S.1
  • 54
    • 78449257931 scopus 로고    scopus 로고
    • PyFlag
    • PyFlag, http://www.pyflag.net
  • 62
    • 78449240224 scopus 로고    scopus 로고
    • Sebek
    • Sebek, http://projects.honeynet.org/sebek/.
  • 64
    • 78449253165 scopus 로고    scopus 로고
    • SilentRunner
    • SilentRunner, http://www.accessdata.com/silentrunner.html.
  • 65
    • 78449232966 scopus 로고    scopus 로고
    • SiLK
    • SiLK, http://tools.netsa.cert.org/silk/.
  • 67
    • 78449254939 scopus 로고    scopus 로고
    • Snort
    • Snort, http://www.snort.org.
  • 68
    • 78449257356 scopus 로고    scopus 로고
    • Solera DS 5150, DeepSee
    • Solera DS 5150, DeepSee, http://www.soleranetworks.com.
  • 70
    • 78449259143 scopus 로고    scopus 로고
    • TCPDstat
    • TCPDstat, http://staff.washington.edu/dittrich/talks/core02/tools.
  • 71
    • 78449252977 scopus 로고    scopus 로고
    • TCPDump
    • TCPDump, http://www.tcpdump.org.
  • 72
    • 78449251254 scopus 로고    scopus 로고
    • TCPFlow
    • TCPFlow, http://www.circlemud.org/jelson/software/tcpflow.
  • 73
    • 78449262210 scopus 로고    scopus 로고
    • TCPReplay
    • TCPReplay, http://tcpreplay.synfin.net/trac/.
  • 74
    • 78449242441 scopus 로고    scopus 로고
    • TCPStat
    • TCPStat, http://www.frenchfries.net/paul/tcpstat.
  • 75
    • 78449261629 scopus 로고    scopus 로고
    • TCPTrace
    • TCPTrace, http://www.tcptrace.org.
  • 76
    • 78449256219 scopus 로고    scopus 로고
    • TCPXtract
    • TCPXtract, http://tcpxtract.sourceforge.net.
  • 82
    • 78449256615 scopus 로고    scopus 로고
    • Why is Twitter so vulnerable to DDoS attack?
    • Why is Twitter so vulnerable to DDoS attack?, http://www.crn.com/ security/219300104.
  • 83
    • 78449240040 scopus 로고    scopus 로고
    • Wireshark
    • Wireshark, http://www.wireshark.org.
  • 84
    • 78449237852 scopus 로고    scopus 로고
    • Xplico
    • Xplico, http://www.xplico.org.


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.