Forensic Extraction of Network Artifacts A Wireshark-Based Analysis of CTF Scenario

dc.contributor.advisorNelmiawati
dc.contributor.authorGultom, Josep Lois Castilo
dc.date.accessioned2026-09-04T04:45:13Z
dc.date.issued2026-07-17
dc.description.abstractNetwork forensics is a branch of digital forensics concerned with monitoring and capturing traffic to uncover digital crime. The purpose of this report is to isolate network forensics artifacts (e.g. covert payload and data exfiltration) from Capture The Flag (CTF) network traffic PCAPs, which will be used to build a complete picture of attack events. Although attackers may hide their malware commands and control in plain sight via network traffic, post-incident forensic analysis may allow investigators to study the captured packet data and identify malicious activity. A post-incident analysis was executed on a simulated CTF network traffic PCAP file with the network packet analyser Wireshark. Post-incident forensic analysis was applied by performing statistical analysis to identify and filter network traffic and reconstructing TCP streams to extract specific malicious packets from network noise, uncover attacks, and the impact of a breach. This analysis involves the usage of Wireshark display filter expressions, statistics capability features, and more. This paper proves that with post-incident forensic analysis techniques, an investigator will be able to identify and isolate the network forensic artifacts, construct an event timeline, and gain an accurate understanding of the incident.
dc.identifier.citationIEEE
dc.identifier.kodeprodiKODEPRODI57302#Rekayasa Keamanan Siber
dc.identifier.nidnNIDN0029088902
dc.identifier.nimNIM4332001014
dc.identifier.urihttps://repository.polibatam.ac.id//handle/PL29/6833
dc.language.isoen_US
dc.publisherPoliteknik Negeri Batam
dc.subjectSOCIAL SCIENCES::Statistics, computer and systems science::Informatics, computer and systems science::Information technology
dc.titleForensic Extraction of Network Artifacts A Wireshark-Based Analysis of CTF Scenario
dc.typeArticle

Files

Original bundle

Now showing 1 - 3 of 3
Loading...
Thumbnail Image
Name:
4332002014_Artikel.pdf
Size:
700.19 KB
Format:
Adobe Portable Document Format
Loading...
Thumbnail Image
Name:
Lembar_Pengesahan.pdf
Size:
100.65 KB
Format:
Adobe Portable Document Format
Loading...
Thumbnail Image
Name:
Borang_Publikasi.pdf
Size:
125.24 KB
Format:
Adobe Portable Document Format

License bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed upon to submission
Description: