Question: Please respond all questions for Thumbs Up. 1. a) Explain the concept of Admissibility of Evidence. b) The reliability of TCP/IP packet header forensic data
Please respond all questions for Thumbs Up.
1. a) Explain the concept of Admissibility of Evidence.
b) The reliability of TCP/IP packet header forensic data may be questioned because of spoofing attacks that may falsify the MAC or IP address. What other computer or network forensic data may be used to authenticate a MAC or IP address?
c) Tracking Hackers through Cyberspace and Blackboard provides a detailed Network Forensic Investigation Methodology using the acronym OSCAR. List five or more investigation guideline using the following table for each phase of the OSCAR investigation methodology.
| OSCAR Investigation Methodology | Investigation guidelines Summer 2018 |
| Obtain Incident Information | |
| Obtain Environment Information | |
| Strategize or plan for the investigation | |
| Collect Evidence | |
| Analyze Evidence | |
| Forensic Report |
d. Define or explain each digital evidence concept and provide one or more examples to apply the concept to Network Forensics using the following table.
| Digital Evidence Concepts | Definition or Explanation | Examples applied to Network Forensics |
| Digital Evidence | ||
| Best Evidence Rule | ||
| Hearsay Evidence | ||
| Business Records | ||
| Real Evidence | ||
| Circumstantial Evidence | ||
| Chain of Custody |
Step by Step Solution
There are 3 Steps involved in it
Get step-by-step solutions from verified subject matter experts
