QuestionQ450
Logs and Network ForensicsDuring a wireless-network forensics operation at a technology company in Austin, Texas, investigators use standard capture tools to collect live traffic from a suspected internal intrusion. Although they remain close to the affected area, they obtain only partial packet captures, and the extracted logs contain substantial gaps that prevent correlating device identifiers with timestamps. Which condition most directly explains this limitation?
- A Inability to collect traffic from multiple access points
- B Interoperability with other wireless networks
- C Inaccuracy of results
- D Difficulty in gathering solid evidence in case of impersonation attacks
Community Discussion