CYBV382 - Network Forensics

CYBV382
Network Forensics

Bachelor's Degrees

Defense & Forensics

Certificates

Cybersecurity Digital Forensics 

Course Description

CYBV 382 provides students with in depth knowledge conducting a forensic investigation focusing on network attacks.  This course will focus on core concepts of network forensics, coding, network forensic tools, and methodologies for conducting forensic investigations.  Students will explore statistical flow analysis, network enumeration, tunneling and encryption and malware detection to support investigations.

Learning Outcomes

The student will:

  • Collect and analyze log based and network digital artifacts
  • Conduct deep packet inspection and statistical flow analysis
  • Develop methodologies to combat tunneling and encryption
  • Investigate malware, Command and Control (C2) servers, and log data

Course Objectives

The student will:

  • Discover and analyze network traffic to support network forensic investigations
  • Analyze and interpret encrypted traffic
  • Understand and identify malware and information across the network wire
  • Evaluate, develop and use tools and custom scripts for network forensics automation
  • Correlate data collected from attacks and develop comprehensive reports to support management decision making and potentially legal proceedings