Difference between revisions of "Fall 2026: Cyber Forensics"

From MKWiki
Jump to navigation Jump to search
 
(17 intermediate revisions by the same user not shown)
Line 59: Line 59:
 
* Turn off'''(shut down) your assigned computer and arrange the chair''' before you leave the lab.
 
* Turn off'''(shut down) your assigned computer and arrange the chair''' before you leave the lab.
  
== Lab 1: ( week of 18<sup>th</sup> August 2025 ) ==
+
 
 +
=== Lab 1 & 2: ( week of 27<sup>th</sup> July,  03<sup>rd</sup> & 10<sup>th</sup> August 2026 ) ===
 +
{| class="wikitable" style="text-align: justify;
 +
|-
 +
! Task. No. 
 +
! Task
 +
! Assessment Period
 +
! Submission Deadline
 +
|-
 +
| style="width: 8%"  | 1 & 2
 +
| style="width: 60%" | Study of Network related Commands (Windows/Linux)
 +
* '''Network Discovery:''' - Ping, Traceroute/Tracert/Tracepath, Nmap, MTR/Pathping
 +
* '''Traffic Analysis:''' - Tcpdump/ptkmon/resmon(GUI Tool), Iftop/Bmon, Iperf
 +
* '''DNS/Domain Forensics:''' - Dig, Nslookup, Whois, Host
 +
* '''Host configuration:'''- Ifconfig/ip, SS/Netstat, Ethtool, Hostname
 +
* '''Address/Routing Analysis:''' - ARP/arp -a, Route/ route print, Iproute2
 +
* '''Data Transfer/File Retrieval:''' - wget, curl/curl.exe
 +
| style="width: 15%" |  29/07/2026 - 26/08/2026
 +
|  '''28/08/2026'''
 +
|}
 +
 
 +
 
 +
=== Lab 3: ( week of 31<sup>st</sup> August 2026 ) ===
 +
{| class="wikitable" style="text-align: justify;
 +
|-
 +
! Task. No. 
 +
! Task
 +
! Assessment Period
 +
! Submission Deadline
 +
|-
 +
| style="width: 8%"  | 3
 +
| style="width: 60%" | Analysis of Windows registry
 +
| style="width: 15%" |  02/09/2026 - 09/09/2026
 +
|  '''10/09/2026'''
 +
|}
 +
 
 +
 
 +
=== Lab 4: ( week of 07<sup>th</sup> September 2026 ) ===
 
{| class="wikitable" style="text-align: justify;  
 
{| class="wikitable" style="text-align: justify;  
 
|-
 
|-
Line 67: Line 104:
 
! Submission Deadline
 
! Submission Deadline
 
|-
 
|-
| style="width: 8%"  | 1
+
| style="width: 8%"  | 4
| style="width: 60%" | Study of Network related Commands (Linux)
+
| style="width: 60%" | Capture and analyse network packets using Wireshark. Analyse the packets captured.
* Network Discovery: - '''''Ping, Traceroute/Tracepath, Nmap, MTR'''''
+
| style="width: 15%" |  09/09/2026 - 16/09/2026
* Traffic Analysis: - '''''Tcpdump, Iftop/Bmon, Iperf'''''
+
'''17/09/2026'''
* DNS/Domain Forensics: - '''''Dig, Nslookup, Whois, Host'''''
 
* Host configuration:- '''''Ifconfig/Ip, SS/Netstat, Ethtool, Hostname'''''
 
* Address/Routing Analysis: - '''''ARP, Route, Iproute2'''''
 
* Data Transfer/File Retrieval: - '''''wget, curl'''''
 
| style="width: 15%" |  18/08/2025 - 25/08/2025
 
26/08/2025
 
 
|}
 
|}
  
 
== Resources ==
 
== Resources ==
 
'''References:'''
 
'''References:'''
* '''R1''':  Marjee T. Britz, Computer Forensics and Cyber Crime: An Introduction, Pearson Education, 2013. <br>
+
* '''R1''':  Dejey, S. Murugan, Cyber Forensics, Oxford University Press, 2018.
* '''R2''':  C. Altheide & H. Carvey Digital Forensics with Open Source Tools, Syngress, 2011. <br>
+
* '''R2''':  C. Altheide & H. Carvey, Digital Forensics with Open Source Tools, Syngress, 2011. ISBN: 9781597495868.
 +
* '''R3''':  Niranjan Reddy, Practical Cyber Forensics. An Incident-Based Approach to Forensic Investigations, Apress, 2019 (Available on DU eLibrary).
 +
* '''R4''':  Marjee T. Britz, Computer Forensics and Cyber Crime: An Introduction, Pearson Education, 2013.
 +
* '''R5''':  https://www.indiacode.nic.in/handle/123456789/1999?sam_handle=123456789/1362
  
 
'''Additional References:'''
 
'''Additional References:'''
# Computer Forensics: Investigating Network Intrusions and Cybercrime" by Cameron H. Malin, Eoghan Casey, and James M. Aquilina
+
# “Computer Forensics: Investigating Network Intrusions and Cybercrime” by Cameron H.
# Online Course management System: https://esu.desire2learn.com/
+
Malin, Eoghan Casey, and James M. Aquilina Online Course Management System: https://esu.desire2learn.com/
# Computer Forensics, Computer Crime Investigation by John R,Vacca, Firewall Media, New Delhi.
+
# Computer Forensics, Computer Crime Investigation by John R., Vacca, Firewall Media, New Delhi.
# Computer Forensics and Investigations by Nelson, Phillips Enfinger, Steuart,CENGAGE Learning
+
# Computer Forensics and Investigations by Nelson, Phillips, Enfinger, Steuart, CENGAGE Learning
# Real Digital Forensics by Keith j.Jones, Richard Bejitlich,Curtis W.Rose, AddisonWesley Pearson Education
 

Latest revision as of 23:05, 7 September 2026

Logistics

  • Class Timings: Wednesdays 10:30 am - 11:30 am, Fridays 10:30 am - 12:30 pm
  • Classroom: Wednesdays (R40) and Fridays (R-44)
  • Lab Timings: Wednesdays 8:30 am - 10:30 am
  • Labs: Computer Lab 4 (CL-4)

Course Overview

Lectures

Lecture Topic Lecture Slides Readings
Unit-1 Digital Forensics:: [unit1.pdf] Chapter 1 (CB1)
Unit 2 Windows OS Forensics: [unit2.pdf] Chapter 2 (CB1)
Unit 3 Evidence Recovery: [unit3.pdf] Chapter 6 (CB1)
Unit 4 Investigation: [unit4.pdf] Chapter 4 (CB1)
Unit 5 Cyber Crimes and Cyber Laws: [unit5.pdf] Chapter 5 (CB1)

Assignments and Tests

Class Assignments

  • Assignment No. 1,
  • Assignment No. 2,

Tests and Quizzes

  • Test 1 :
  • Test 2 :

Labs

Instructions

  • Please be on time to avoid the Attendance Penalty.
  • Please put your mobile phone on Silent Mode.
  • Each lab assignment needs to be submitted in the Google Classroom for evaluation(will be notified in the GC lab-wise, submit before the deadline).
  • Turn off(shut down) your assigned computer and arrange the chair before you leave the lab.


Lab 1 & 2: ( week of 27th July, 03rd & 10th August 2026 )

Task. No. Task Assessment Period Submission Deadline
1 & 2 Study of Network related Commands (Windows/Linux)
  • Network Discovery: - Ping, Traceroute/Tracert/Tracepath, Nmap, MTR/Pathping
  • Traffic Analysis: - Tcpdump/ptkmon/resmon(GUI Tool), Iftop/Bmon, Iperf
  • DNS/Domain Forensics: - Dig, Nslookup, Whois, Host
  • Host configuration:- Ifconfig/ip, SS/Netstat, Ethtool, Hostname
  • Address/Routing Analysis: - ARP/arp -a, Route/ route print, Iproute2
  • Data Transfer/File Retrieval: - wget, curl/curl.exe
29/07/2026 - 26/08/2026 28/08/2026


Lab 3: ( week of 31st August 2026 )

Task. No. Task Assessment Period Submission Deadline
3 Analysis of Windows registry 02/09/2026 - 09/09/2026 10/09/2026


Lab 4: ( week of 07th September 2026 )

Task. No. Task Assessment Period Submission Deadline
4 Capture and analyse network packets using Wireshark. Analyse the packets captured. 09/09/2026 - 16/09/2026 17/09/2026

Resources

References:

  • R1: Dejey, S. Murugan, Cyber Forensics, Oxford University Press, 2018.
  • R2: C. Altheide & H. Carvey, Digital Forensics with Open Source Tools, Syngress, 2011. ISBN: 9781597495868.
  • R3: Niranjan Reddy, Practical Cyber Forensics. An Incident-Based Approach to Forensic Investigations, Apress, 2019 (Available on DU eLibrary).
  • R4: Marjee T. Britz, Computer Forensics and Cyber Crime: An Introduction, Pearson Education, 2013.
  • R5: https://www.indiacode.nic.in/handle/123456789/1999?sam_handle=123456789/1362

Additional References:

  1. “Computer Forensics: Investigating Network Intrusions and Cybercrime” by Cameron H.
  2. Malin, Eoghan Casey, and James M. Aquilina Online Course Management System: https://esu.desire2learn.com/
  3. Computer Forensics, Computer Crime Investigation by John R., Vacca, Firewall Media, New Delhi.
  4. Computer Forensics and Investigations by Nelson, Phillips, Enfinger, Steuart, CENGAGE Learning