For a detailed network investigation, the network forensics investigator should follow some type of network analysis framework when analyzing the collected network traffic. We recommend the “STEP” Methodology (see Figure 11.6). STEP is a four-phase, top-down network traffic filteringapproach created by Terrence Lillard to assist the network examiner
đang được dịch, vui lòng đợi..
