0% found this document useful (0 votes)
4 views1 page

Assignment Questions

The document outlines various aspects of digital evidence and forensic analysis, including its role as an alibi, particularly in Unix and Windows systems. It discusses cyber stalking, IP tracing, and the differences between network and traditional forensics, as well as the principles of computer and network forensics. Additionally, it covers investigative reconstruction, the significance of hash values, and methods for analyzing ARP cache in detecting spoofing attacks.

Uploaded by

pprem49778
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
4 views1 page

Assignment Questions

The document outlines various aspects of digital evidence and forensic analysis, including its role as an alibi, particularly in Unix and Windows systems. It discusses cyber stalking, IP tracing, and the differences between network and traditional forensics, as well as the principles of computer and network forensics. Additionally, it covers investigative reconstruction, the significance of hash values, and methods for analyzing ARP cache in detecting spoofing attacks.

Uploaded by

pprem49778
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd

1. Explain Digital Evidence as Alibi with an example.

2. Explain Digital Evidence on Unix systems.


3. Explain Cyber Stalking and IP tracing with example?
4. Explain Evidence on Physical/Data Link layers?
5. Differentiate Network and traditional forensics.
6. Differentiate reconstruction and recovery.
7. Explain Investigative Reconstruction and its role in cyber investigations.
8. Explain Digital Evidence on Windows systems.?
9. Explain Forensics principles to computers.?
10. Explain Evidence on Network/Transport layers
[Link] Forensics principles to networks.
12. What is the Role of hash values in reconstruction? Explain with
Example?
[Link] the importance of IP address analysis in tracking malicious
activity.
[Link] does a forensic examiner analyze ARP (Address Resolution
Protocol) cache to detect an ARP spoofing attack?
[Link] the key differences between analyzing Physical Layer evidence
and Network Layer evidence.

You might also like