Cisco Router and Switch Forensics

Cisco Router and Switch Forensics
Author :
Publisher : Syngress
Total Pages : 604
Release :
ISBN-10 : 9780080953847
ISBN-13 : 0080953840
Rating : 4/5 (840 Downloads)

Book Synopsis Cisco Router and Switch Forensics by : Dale Liu

Download or read book Cisco Router and Switch Forensics written by Dale Liu and published by Syngress. This book was released on 2009-06-03 with total page 604 pages. Available in PDF, EPUB and Kindle. Book excerpt: Cisco IOS (the software that runs the vast majority of Cisco routers and all Cisco network switches) is the dominant routing platform on the Internet and corporate networks. This widespread distribution, as well as its architectural deficiencies, makes it a valuable target for hackers looking to attack a corporate or private network infrastructure. Compromised devices can disrupt stability, introduce malicious modification, and endanger all communication on the network. For security of the network and investigation of attacks, in-depth analysis and diagnostics are critical, but no book currently covers forensic analysis of Cisco network devices in any detail. Cisco Router and Switch Forensics is the first book devoted to criminal attacks, incident response, data collection, and legal testimony on the market leader in network devices, including routers, switches, and wireless access points. Why is this focus on network devices necessary? Because criminals are targeting networks, and network devices require a fundamentally different approach than the process taken with traditional forensics. By hacking a router, an attacker can bypass a network's firewalls, issue a denial of service (DoS) attack to disable the network, monitor and record all outgoing and incoming traffic, or redirect that communication anywhere they like. But capturing this criminal activity cannot be accomplished with the tools and techniques of traditional forensics. While forensic analysis of computers or other traditional media typically involves immediate shut-down of the target machine, creation of a duplicate, and analysis of static data, this process rarely recovers live system data. So, when an investigation focuses on live network activity, this traditional approach obviously fails. Investigators must recover data as it is transferred via the router or switch, because it is destroyed when the network device is powered down. In this case, following the traditional approach outlined in books on general computer forensics techniques is not only insufficient, but also essentially harmful to an investigation.Jargon buster: A network switch is a small hardware device that joins multiple computers together within one local area network (LAN). A router is a more sophisticated network device that joins multiple wired or wireless networks together. - The only book devoted to forensic analysis of routers and switches, focusing on the operating system that runs the vast majority of network devices in the enterprise and on the Internet - Outlines the fundamental differences between router forensics and traditional forensics, a critical distinction for responders in an investigation targeting network activity - Details where network forensics fits within the entire process of an investigation, end to end, from incident response and data collection to preparing a report and legal testimony


Cisco Router and Switch Forensics Related Books

Cisco Router and Switch Forensics
Language: en
Pages: 604
Authors: Dale Liu
Categories: Computers
Type: BOOK - Published: 2009-06-03 - Publisher: Syngress

GET EBOOK

Cisco IOS (the software that runs the vast majority of Cisco routers and all Cisco network switches) is the dominant routing platform on the Internet and corpor
Cisco CCNA/CCENT Exam 640-802, 640-822, 640-816 Preparation Kit
Language: en
Pages: 849
Authors: Dale Liu
Categories: Computers
Type: BOOK - Published: 2009-06-30 - Publisher: Syngress

GET EBOOK

Three exams, two certifications, one complete Cisco training solution for networking professionals! The CCNA exam is an entry-level IT certification from Cisco
Cybercrime and Cloud Forensics: Applications for Investigation Processes
Language: en
Pages: 394
Authors: Ruan, Keyun
Categories: Law
Type: BOOK - Published: 2012-12-31 - Publisher: IGI Global

GET EBOOK

While cloud computing continues to transform developments in information technology services, these advancements have contributed to a rise in cyber attacks; pr
Digital Archaeology
Language: en
Pages: 597
Authors: Michael W. Graves
Categories: Computers
Type: BOOK - Published: 2013 - Publisher: Pearson Education

GET EBOOK

In Digital Archaeology, expert practitioner Michael Graves has written the most thorough, realistic, and up-to-date guide to the principles and techniques of mo
Digital Forensics, Investigation, and Response
Language: en
Pages: 425
Authors: Chuck Easttom
Categories: Computers
Type: BOOK - Published: 2021-08-10 - Publisher: Jones & Bartlett Learning

GET EBOOK

Digital Forensics, Investigation, and Response, Fourth Edition examines the fundamentals of system forensics, addresses the tools, techniques, and methods used