Show simple item record

dc.contributor.authorKemei, Peter. K.
dc.contributor.authorThiga, Moses
dc.contributor.authorCherus, Joel
dc.date.accessioned2025-02-07T09:37:25Z
dc.date.available2025-02-07T09:37:25Z
dc.date.issued2024-08
dc.identifier.otherhttps://www.doi.org/10.56726/IRJMETS61000
dc.identifier.urihttp://ir.kabarak.ac.ke/handle/123456789/1600
dc.description.abstractNetwork forensics is a science of determining and retrieving evidential information in a computer networked environment about a criminality in such a way as to make it admissible. The established computer networks forensic field lays a strong foundation for network forensics as standard security frameworks, tools and techniques are in place for phase detection, collection, preservation and presentation of evidence. However, little has been done to address phase examination. The main challenge identified on this phase is identification and correlation. The objectives of the study were to; analyse, investigate, identify, develop and evaluate a network forensic framework which addresses the challenge in examination. A methodology was specifically formalized on real time and post attacked network traffic investigation based on datasets prototype implementation. The proposed technique in examination phase is identification and correlation of traced datasets. The identification provided attempts made in compromising a system and assist during reconstruction of intruded information. The correlation validated the particular intrusion and guide in decision to proceed with investigation. The techniques resulted in confirmation of DDoS, Portscan and cross-site scripting attacks dataset.en_US
dc.language.isoenen_US
dc.publisherInternational Research Journal of Modernization in Engineering Technology and Scienceen_US
dc.subjectNetworken_US
dc.subjectForensicen_US
dc.subjectFrameworken_US
dc.subjectExaminationen_US
dc.subjectIdentificationen_US
dc.subjectCorrelationen_US
dc.titleEXAMINATION PHASE NETWORK FORENSIC FRAMEWORK FOR IDENTIFICATION AND CORRELATION OF ATTACK ATTRIBUTESen_US
dc.typeArticleen_US


Files in this item

Thumbnail

This item appears in the following Collection(s)

Show simple item record