Present Now
Paper Outline
Prince Boateng
American Military University
ISSC456
Prof Reid Raed Sbeit
11/30/2025
I. Introduction
· Definition and purpose of network forensics
· Importance in modern cyber security
II. Key Concepts
· Network traffic capture and analysis
· Log collection and correlation
III. Tools and Techniques
· Packet analyzers (e.g., Wireshark)
· IDS/IPS and SIEM systems
IV. Network Forensic Process
· Evidence collection
· Analysis and interpretation
· Reporting findings
V. Common Investigations
· Intrusions
· Malware communication
· Data exfiltration
VI. Challenges
· Encryption
· Large data volume
VII. Conclusion
· Summary of network forensics’ role in security