Analyzing Network Traffic For Incidents

Analyzes network traffic captures and flow data to identify adversary activity during security incidents, including command-and-control communications, lateral movement, data exfiltration, and exploitation attempts. Uses Wireshark, Zeek, and NetFlow analysis techniques. Activates for requests involving network traffic analysis, packet capture investigation, PCAP analysis, network forensics, C2 traffic detection, or exfiltration detection.

Njones17 Updated

File contents

Njones17/AI-agent-master-cyber-skills-list/tree/main/skills/forensics/analyzing-network-traffic-for-incidents commit e59897ec0e

Frequently asked questions

npx skillmds@latest add njones17/analyzing-network-traffic-for-incidents