Live Monitoring For Forensic Artifacts from IM Messenger Packets Using Freeware
Sankarshana Kadambari, Bhupendra Singh Chauhan, Mohit Soni · International Journal of Advance Research and Innovation · 2019
Numerous smartphone applications such as snapchat pose a major problem for a network administrator, as the chat gets deleted automatically removing every evidence of a conversation. It becomes difficult for an administrator to confirm whereabouts of a captured packet belonging to an IM application. However, if the same is captured in real time using Wireshark-a detailed analysis of the protocols would reveal information regarding the source of packet generation. This paper emulates a closed environment and uses freeware to capture encrypted packets from instant messengers and attempts to produce sufficient artifacts, so as to pin point the sender.