Packet-analysis
In Chapter 13, the topic of packet analysis is discussed and a claim is raised that one of the most important skills an analyst can have is the ability to analyze and interpret packet data.
In your opinion, why do you believe this to be true? What types of potential indicators of compromise (IOCs) can be collected from packet data (either FPC or PSTR)?
http://zempirians.com/ebooks/Chris%20Sanders%20and…