 




<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>IT Answers &#187; Forensics</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/itanswers/tag/security/forensics/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/itanswers</link>
	<description></description>
	<lastBuildDate>Tue, 21 May 2013 05:55:41 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>Network forensics</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/network-forensics/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/network-forensics/#comments</comments>
		<pubDate>Mon, 20 Apr 2009 03:30:18 +0000</pubDate>
		<dc:creator>SajMugh</dc:creator>
				<category><![CDATA[Forensic analysis]]></category>
		<category><![CDATA[Forensics]]></category>
		<category><![CDATA[IT careers]]></category>
		<category><![CDATA[Network forensics]]></category>
		<category><![CDATA[Networking careers]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[I am currently a final year student studying forensic computing. i was hoping someone could give me some information regarding network forensics, i would like to know if there is a need for development in this area, what is the current views on networking with regards to gathering of forensic data over a network, and [...]]]></description>
				<content:encoded><![CDATA[<p>I am currently a final year student studying forensic computing. i was hoping someone could give me some information regarding network forensics, i would like to know if there is a need for development in this area, what is the current views on networking with regards to gathering of forensic data over a network, and forensic analysis of network activity?</p>
<p>also are there any correct step/procedures that need to followed when carrying out a network forensic investgiation?</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/network-forensics/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>IP address trace</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/ip-address-trace/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/ip-address-trace/#comments</comments>
		<pubDate>Wed, 17 Sep 2008 05:18:33 +0000</pubDate>
		<dc:creator>Mayur</dc:creator>
				<category><![CDATA[Forensics]]></category>
		<category><![CDATA[IP trace]]></category>
		<category><![CDATA[Monitoring]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Hi, My computer is in domain. I am not access server. From last some days someone restart my computer by network through command prompt. I wont to trace this ip from my computer. Someone help me??]]></description>
				<content:encoded><![CDATA[<p>Hi,<br />
 My computer is in domain. I am not access server. From last some days someone restart my computer by network through command prompt. I wont to trace this ip from my computer. Someone help me??</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/ip-address-trace/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Is there spyware which can detect the identity of a person who leaves an anonymous message on a bebo page?</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/is-there-spyware-which-can-detect-the-identity-of-a-person-who-leaves-an-anonymous-message-on-a-bebo-page/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/is-there-spyware-which-can-detect-the-identity-of-a-person-who-leaves-an-anonymous-message-on-a-bebo-page/#comments</comments>
		<pubDate>Thu, 03 Jul 2008 09:41:20 +0000</pubDate>
		<dc:creator>Fifey</dc:creator>
				<category><![CDATA[Bebo]]></category>
		<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Spyware]]></category>
		<category><![CDATA[Web security]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[New Discussion Post by]]></description>
				<content:encoded><![CDATA[New Discussion Post by ]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/is-there-spyware-which-can-detect-the-identity-of-a-person-who-leaves-an-anonymous-message-on-a-bebo-page/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Computer Fraud and Invasion of Privacy</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/computer-fraud-and-invasion-of-privacy/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/computer-fraud-and-invasion-of-privacy/#comments</comments>
		<pubDate>Fri, 23 May 2008 17:45:13 +0000</pubDate>
		<dc:creator>Tripmom</dc:creator>
				<category><![CDATA[Email security]]></category>
		<category><![CDATA[Forensic analysis]]></category>
		<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Security forensics]]></category>
		<category><![CDATA[Security threats]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[I have had someone to illegally go into one of my email accounts and delete specific files. I know that this is a felony crime. I am trying to figure out the process of attaching the IP addresses that I have to the person I suspect has committed this crime.]]></description>
				<content:encoded><![CDATA[<p>I have had someone to illegally go into one of my email accounts and delete specific files.  I know that this is a felony crime.  I am trying to figure out the process of attaching the IP addresses that I have to the person I suspect has committed this crime.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/computer-fraud-and-invasion-of-privacy/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Unknown Threats</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/unknown-threats/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/unknown-threats/#comments</comments>
		<pubDate>Sat, 28 Jul 2007 14:24:28 +0000</pubDate>
		<dc:creator>Czarleo</dc:creator>
				<category><![CDATA[Application security]]></category>
		<category><![CDATA[backdoors]]></category>
		<category><![CDATA[configuration]]></category>
		<category><![CDATA[Current threats]]></category>
		<category><![CDATA[Database]]></category>
		<category><![CDATA[Encryption]]></category>
		<category><![CDATA[Exchange]]></category>
		<category><![CDATA[Firewalls]]></category>
		<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[human factors]]></category>
		<category><![CDATA[Incident response]]></category>
		<category><![CDATA[Instant Messaging]]></category>
		<category><![CDATA[Intrusion management]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[patching]]></category>
		<category><![CDATA[PEN testing]]></category>
		<category><![CDATA[Platform Security]]></category>
		<category><![CDATA[Secure Coding]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[Spyware]]></category>
		<category><![CDATA[Tech support]]></category>
		<category><![CDATA[Trojans]]></category>
		<category><![CDATA[Viruses]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[vulnerability management]]></category>
		<category><![CDATA[Wireless]]></category>
		<category><![CDATA[worms]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Apart from honeypots, what are the different methods to find unknown threats which are prevalent? and how to find methods to mitigate them. PS: all the vulnerabilities are known to all the n/w administrators and then can take measures to mitigate attacks but this doesnt happen..Hackers are at least 10 steps ahead..So how to find [...]]]></description>
				<content:encoded><![CDATA[<p>Apart from honeypots, what are the different methods to find unknown threats which are prevalent? and how to find methods to mitigate them.</p>
<p>PS: all the vulnerabilities are known to all the n/w administrators and then can take measures to mitigate attacks but this doesnt happen..Hackers are at least 10 steps ahead..So how to find methods to find such unknown threats??</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/unknown-threats/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Paranoid about protecting my MAC address&#8211;Please read my story</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/paranoid-about-protecting-my-mac-address-please-read-my-story/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/paranoid-about-protecting-my-mac-address-please-read-my-story/#comments</comments>
		<pubDate>Tue, 24 Jul 2007 14:28:29 +0000</pubDate>
		<dc:creator>DonBlake</dc:creator>
				<category><![CDATA[Access control]]></category>
		<category><![CDATA[backdoors]]></category>
		<category><![CDATA[Browsers]]></category>
		<category><![CDATA[configuration]]></category>
		<category><![CDATA[Current threats]]></category>
		<category><![CDATA[filtering]]></category>
		<category><![CDATA[Firewalls]]></category>
		<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[human factors]]></category>
		<category><![CDATA[Incident response]]></category>
		<category><![CDATA[Intrusion management]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[patching]]></category>
		<category><![CDATA[PEN testing]]></category>
		<category><![CDATA[Platform Security]]></category>
		<category><![CDATA[Servers]]></category>
		<category><![CDATA[Spyware]]></category>
		<category><![CDATA[SSL/TLS]]></category>
		<category><![CDATA[Trojans]]></category>
		<category><![CDATA[Viruses]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[vulnerability management]]></category>
		<category><![CDATA[Web security]]></category>
		<category><![CDATA[Wireless]]></category>
		<category><![CDATA[worms]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[What is the easiest way to protect your MAC address against spoofing? In 2004 I was the victim of a hacker that somehow spoofed my Cable Modem Mac address and used it to cover his identity while serving copyright material thru the internet. I was unsuspecting until my ISP one day suspended my service. I [...]]]></description>
				<content:encoded><![CDATA[<p>What is the easiest way to protect your MAC address against spoofing?  In 2004 I was the victim of a hacker that somehow spoofed my Cable Modem Mac address and used it to cover his identity while serving copyright material thru the internet. I was unsuspecting until my ISP one day suspended my service. I thought it was a normal outage but when I called my ISP I was transfered to their Security Dept. who said they would be sending papers explaining the situation. Some days latter I received an envelope from the Security Department of my ISP detailing the films that this hacker was serving thru the internet using my IP number and MAC address and warning me to desist. </p>
<p>This experience was really scary and frustrating because my only defense was that the times the hacker was logging with my identity I was at my workplace away from my home computer which was the one connected to the spoofed Cable Modem but still not a strong enough defense. </p>
<p>After arguing with the Security Dept. and not getting anybody to sympathize with me, even though I was only getting a warning I decided I couldn&#8217;t use the high speed internet (the only choice in my area) and make myself a victim of the hacker so I wrote a letter detailing my ordeal to the Security Dept. naming the people I have talked to and detailing my story and how I was being forced out of their high speed internet service because of another person impersonating me thru my MAC and IP address. I closed my account and had to get back to dial up service.</p>
<p>After a year I got brave enough to reopen my account but this time I rented a modem from the ISP so I didn&#8217;t loose my money if somebody spoofed my equipment again. I have been almost three years and the experience hasn&#8217;t been repeated.  Now I have installed a wireless network at my home in order to connect my daughter&#8217;s computer to the internet. I&#8217;ve been reading about how to secure it but my previous experience has got me a bit paranoid, specially with the higher vulnerability of Wireless networks.</p>
<p>What would be the best way to protect my MAC address against spoofing? If a person could do it when it was only one wired computer connected with a cable to the Cable Modem how easier it might be now that I have a wireless network? My brother in law says not to worry, that a bolt of lightning doesn&#8217;t falls twice on the same spot but I can&#8217;t help to feel very paranoid.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/paranoid-about-protecting-my-mac-address-please-read-my-story/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>windows password question</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/windows-password-question/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/windows-password-question/#comments</comments>
		<pubDate>Tue, 17 Jul 2007 00:09:16 +0000</pubDate>
		<dc:creator>Minxcomp1</dc:creator>
				<category><![CDATA[Biometrics]]></category>
		<category><![CDATA[Digital certificates]]></category>
		<category><![CDATA[Firewalls]]></category>
		<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Identity & Access Management]]></category>
		<category><![CDATA[Incident response]]></category>
		<category><![CDATA[Interoperability]]></category>
		<category><![CDATA[Intrusion management]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[provisioning]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Security tokens]]></category>
		<category><![CDATA[Single sign-on]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[Tech support]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[Wireless]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[I recently purchased a computer from a &#8220;going out of business&#8221; sale for my fathers business and when I try to logon to Windows I get the logon screen with domain. I have a valid username and password but obviously i am not connected to a domain. I need to bypass this if possible. The [...]]]></description>
				<content:encoded><![CDATA[<p>I recently purchased a computer from a &#8220;going out of business&#8221; sale for my fathers business and when I try to logon to Windows I get the logon screen with domain. I have a valid username and password but obviously i am not connected to a domain.  I need to bypass this if possible. The safe mode trick that I see all over did not work. Please help as our business is suffering!!!</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/windows-password-question/feed/</wfw:commentRss>
		<slash:comments>10</slash:comments>
		</item>
		<item>
		<title>Selecting an area within security to start</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/selecting-an-area-within-security-to-start/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/selecting-an-area-within-security-to-start/#comments</comments>
		<pubDate>Sun, 24 Jun 2007 16:06:15 +0000</pubDate>
		<dc:creator>Secmax</dc:creator>
				<category><![CDATA[Access control]]></category>
		<category><![CDATA[Application security]]></category>
		<category><![CDATA[Biometrics]]></category>
		<category><![CDATA[Browsers]]></category>
		<category><![CDATA[Career development]]></category>
		<category><![CDATA[CCNA]]></category>
		<category><![CDATA[CCSA]]></category>
		<category><![CDATA[Certifications]]></category>
		<category><![CDATA[CISSP]]></category>
		<category><![CDATA[Compliance]]></category>
		<category><![CDATA[configuration]]></category>
		<category><![CDATA[CRM]]></category>
		<category><![CDATA[Current threats]]></category>
		<category><![CDATA[Database]]></category>
		<category><![CDATA[Digital certificates]]></category>
		<category><![CDATA[Disaster Recovery]]></category>
		<category><![CDATA[Encryption]]></category>
		<category><![CDATA[Exchange]]></category>
		<category><![CDATA[Firewalls]]></category>
		<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Identity & Access Management]]></category>
		<category><![CDATA[Incident response]]></category>
		<category><![CDATA[Intrusion management]]></category>
		<category><![CDATA[MCSE]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[patching]]></category>
		<category><![CDATA[PEN testing]]></category>
		<category><![CDATA[Platform Security]]></category>
		<category><![CDATA[Policies]]></category>
		<category><![CDATA[Risk management]]></category>
		<category><![CDATA[Secure Coding]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Security Program Management]]></category>
		<category><![CDATA[Spyware]]></category>
		<category><![CDATA[SSL/TLS]]></category>
		<category><![CDATA[Trojans]]></category>
		<category><![CDATA[Viruses]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[vulnerability management]]></category>
		<category><![CDATA[Web security]]></category>
		<category><![CDATA[Wireless]]></category>
		<category><![CDATA[worms]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Hi, I&#8217;m studying for an MSc in Information Security from Royal Holloway University of London, I have a B.Engg. degree in computers and a PG Diploma in Networking and Communication as well as the CCSA and CCNA. I&#8217;m also studying for the CISSP. Now, with all these qualifications, could you please tell me which would [...]]]></description>
				<content:encoded><![CDATA[<p>Hi,<br />
I&#8217;m studying for an MSc in Information Security from Royal Holloway University of London, I have a B.Engg. degree in computers and a PG Diploma in Networking and Communication as well as the CCSA and CCNA. I&#8217;m also studying for the CISSP.</p>
<p>Now, with all these qualifications, could you please tell me which would be the best position for me to apply for in order to get a start, and if I try that position what would my options be when I gain some experience. </p>
<p>Thank you!!</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/selecting-an-area-within-security-to-start/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Intrussion detection</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/intrussion-detection/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/intrussion-detection/#comments</comments>
		<pubDate>Fri, 01 Jun 2007 12:10:45 +0000</pubDate>
		<dc:creator>Dimchik</dc:creator>
				<category><![CDATA[Cabling]]></category>
		<category><![CDATA[Firewalls]]></category>
		<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Hubs]]></category>
		<category><![CDATA[Incident response]]></category>
		<category><![CDATA[Intrusion management]]></category>
		<category><![CDATA[Network monitoring]]></category>
		<category><![CDATA[Routers]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Switches]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[Wireless]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Does any one know of any goof Intrussion detection system boxes which are not crazy expensive and support up to 1GB lines.]]></description>
				<content:encoded><![CDATA[<p>Does any one know of any goof Intrussion detection system boxes which are not crazy expensive and support up to 1GB lines.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/intrussion-detection/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>ISP blocks VPN connection</title>
		<link>http://itknowledgeexchange.techtarget.com/itanswers/isp-blocks-vpn-connection/</link>
		<comments>http://itknowledgeexchange.techtarget.com/itanswers/isp-blocks-vpn-connection/#comments</comments>
		<pubDate>Tue, 29 May 2007 03:25:52 +0000</pubDate>
		<dc:creator>Istikph</dc:creator>
				<category><![CDATA[Firewalls]]></category>
		<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Incident response]]></category>
		<category><![CDATA[Intrusion management]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[Wireless]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Question Edited by barbacoder]]></description>
				<content:encoded><![CDATA[Question Edited by barbacoder]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/itanswers/isp-blocks-vpn-connection/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Page Caching using memcached
Database Caching 3/32 queries in 0.039 seconds using memcached
Object Caching 1264/1425 objects using memcached

Served from: itknowledgeexchange.techtarget.com @ 2013-05-21 07:06:54 -->