Network

Network forensics involves the analysis of stored data generated in network traffic and communication.

Network traffic - analysis of stored packet logs, stored communication sessions, and data transfers.
Connection data - identification of stored IP addresses, access times and network connections between devices.
Communication protocols - analysis of e-mail, web, VoIP, and other network protocols