ETRI-Knowledge Sharing Plaform

KOREAN
논문 검색
Type SCI
Year ~ Keyword

Detail

Conference Paper Introduction to a Network Forensics System for Cyber Incidents Analysis
Cited 4 time in scopus Share share facebook twitter linkedin kakaostory
Authors
Yangseo Choi, Joo-Young Lee, Sunoh Choi, Jong-Hyun Kim, Ikkyun Kim
Issue Date
2016-02
Citation
International Conference on Advanced Communication Technology (ICACT) 2016, pp.50-55
Publisher
IEEE
Language
English
Type
Conference Paper
DOI
https://dx.doi.org/10.1109/ICACT.2016.7423270
Abstract
Recently, sophisticated attacks are increased against specific business companies, organizations and various facilities and the attackers are trying to remove attack traces such as system logs and related information on the victim systems. Therefore, it is getting more difficult to collect the information for attack analysis. In order to overcome this situations, companies and organizations have started to collect the network traffic as secondary information for attack analysis. However, most of them are focusing on gathering the network packets. But one of the most important parts is to extract the useful information for attack analysis from the collected data. In this paper, we suggest a network forensics system, Cyber Blackbox, which is focused on the traffic analysis.
KSP Keywords
Attack analysis, Business companies, Network Forensics System, Sophisticated attacks, cyber blackbox, network packets, network traffic, traffic analysis