The Wireshark network protocol analyzer can zero in on just the network traffic you want to see to tell you things like whether your encryption is working, or find infected hosts on your network.
Investigations manager Brandon Gregg explains how to collect evidence for network investigations on the cheap without damaging the mission at hand. Computer forensics don’t have to solely focus on ...