Skip to main navigation Skip to search Skip to main content

Introduction to a network forensics system for cyber incidents analysis

  • Yangseo Choi
  • , Joo Young Lee
  • , Sunoh Choi
  • , Jong Hyun Kim
  • , Ikkyun Kim
  • Electronics and Telecommunications Research Institute

Research output: Contribution to conferenceConference paperpeer-review

Abstract

Recently, sophisticated attacks are increased against specific business companies, organizations and various facilities and the attackers are trying to remove attack traces such as system logs and related information on the victim systems. Therefore, it is getting more difficult to collect the information for attack analysis. In order to overcome this situations, companies and organizations have started to collect the network traffic as secondary information for attack analysis. However, most of them are focusing on gathering the network packets. But one of the most important parts is to extract the useful information for attack analysis from the collected data. In this paper, we suggest a network forensics system, Cyber Blackbox, which is focused on the traffic analysis.

Original languageEnglish
Title of host publication18th International Conference on Advanced Communications Technology
Subtitle of host publication"Information and Communications for Safe and Secure Life!", ICACT 2016 - Proceeding
PublisherInstitute of Electrical and Electronics Engineers Inc.
Pages50-55
Number of pages6
ISBN (Electronic)9788996865063
DOIs
StatePublished - 2016.03.1
Event18th International Conference on Advanced Communications Technology, ICACT 2016 - Pyeongchang, Korea, Republic of
Duration: 2016.01.312016.02.3

Publication series

NameInternational Conference on Advanced Communication Technology, ICACT
Volume2016-March
ISSN (Print)1738-9445

Conference

Conference18th International Conference on Advanced Communications Technology, ICACT 2016
Country/TerritoryKorea, Republic of
CityPyeongchang
Period16.01.3116.02.3

Keywords

  • attack analysis
  • cyber blackbox
  • information security
  • Network forensics
  • network security

Fingerprint

Dive into the research topics of 'Introduction to a network forensics system for cyber incidents analysis'. Together they form a unique fingerprint.

Cite this