Abstract
Data packet analysis targeting instant messaging (IM) applications has become one of the most mentioned case examples in the digital forensic industry, considering that the forensic engineers can extract valuable information by analysing the data packets used by the IM software. The crucial part of this process is to accomplish a series of research and investigation, in addition to correctly implement the related forensics tools. This paper is intended to use QQ, a popular IM software in China, as an experiment example, in cooperation with various tools from Kali Linux, a digital forensics-oriented Linux distribution, to present the complete process of the data packet analysis operation. The result concludes from the experiment may be able to provide constructive suggestions to other related digital forensics cases.
Original language | English |
---|---|
Pages (from-to) | 412-420 |
Number of pages | 9 |
Journal | Indonesian Journal of Electrical Engineering and Computer Science |
Volume | 29 |
Issue number | 1 |
DOIs | |
Publication status | Published - Jan 2023 |
Keywords
- Digital forensics
- Instance messaging
- Kali Linux
- Packet analysis
- Wireshark