Loading presentation...

Present Remotely

Send the link below via email or IM

Copy

Present to your audience

Start remote presentation

  • Invited audience members will follow you as you navigate and present
  • People invited to a presentation do not need a Prezi account
  • This link expires 10 minutes after you close the presentation
  • A maximum of 30 users can follow your presentation
  • Learn more about this feature in our knowledge base article

Do you really want to delete this prezi?

Neither you, nor the coeditors you shared it with will be able to recover it again.

DeleteCancel

Make your likes visible on Facebook?

Connect your Facebook account to Prezi and let your likes appear on your timeline.
You can change this under Settings & Account at any time.

No, thanks

Forensics (Xplico)

No description
by

Breanna Adsit

on 5 April 2016

Comments (0)

Please log in to add your comment.

Report abuse

Transcript of Forensics (Xplico)

Xplico
Open Source Network Forensics Analysis Tool
Goal: Extract from an internet traffic capture the applications data contained.
Extract from:
POP, IMAP, and SMTP protocols
all HTTP contents
VoIP call (SIP), FTP, TFTP, and so on
More protocols support
HTTP
SIP
IMAP
POP
SMTP
TCP
UDP
IPv6
Advantages
No size limit on data entry or the number of files entrance, the only limit is hard drive size
Only need a general public license to use
Customizable with the tools
The Geo map feature can be used in both console mode and web interface.
The command line shows more detail.
What the Tool Captures
Disadvantages
limitations from the command line.
In Xplico the packets can not be copied and sent to two separate dissector, but it possible to lose packets because it may be that the Xplico average processing time for a single packet it is greater than the average number of packets per second.
Have to download extra tools.
Xplico
Some Features:
Multithreading
IPv4 and IPv6 support
Manage a large amount of data
Software architecture
Session Pages
Email Pages
Web Pages
Videos and Images
MMS Page
GeoMap Page
DNS Graphs
Languages
C
Python
PHP
JavaScript
Distributions:

Kali Linux
BackTrack
BackBox
Full transcript