International Journal of Computer Applications |
Foundation of Computer Science (FCS), NY, USA |
Volume 183 - Number 46 |
Year of Publication: 2022 |
Authors: Zakiyaturrahma, Imam Riadi |
10.5120/ijca2022921865 |
Zakiyaturrahma, Imam Riadi . Email Forensic from Phishing Attack using Network Forensics Development Life Cycle Method. International Journal of Computer Applications. 183, 46 ( Jan 2022), 36-42. DOI=10.5120/ijca2022921865
Phishing is a technique used by attackers to steal email users' social media accounts by tricking the target into visiting a fake website that has a login form. Due to lack of awareness and insight in internet network education, users are very vulnerable to fall into the trap of attackers. A phishing email attack is a data manipulation activity that is visible in email headers. The purpose of this study is to assist email users in assessing email messages so as not to become victims of phishing attacks. The purpose of this study is to conduct forensics on phishing email attacks. NFDLC method is used to examine cybercrime digital forensic processes and create digital evidence. Wireshark and NetworkMiner programs are used to deduce the IP and IP address of the perpetrator. This research produces an analysis of phishing email attacks against fake login forms. The evidence obtained in the form of a wireshark data packet capture file that managed to capture the victim's IP address, the attacker's IP address, the sender's email, and the phishing website. The experimental results, it is proven that the Network Forensic Development Life Cycle method can analyze phishing email attacks detected on network traffic activity, with the results of data packet analysis carried out header comparison analysis.