Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
Certified Network Forensics Examiner : CNFE
Rating: 4.5 out of 5(58 ratings)
630 students

Certified Network Forensics Examiner : CNFE

Certification course
Last updated 5/2025
English
English [Auto],

What you'll learn

  • After successfully completing this course, the students shall be able to:
  • Cyber Defense Analysis
  • Incident Response
  • Cyber security Management
  • Systems Analysis
  • Vulnerability Assessment and Management

Course content

20 sections524 lectures15h 17m total length
  • Digital Evidence Concepts0:02

    Explore digital evidence concepts and complete the digital evidence module to clarify key ideas for network investigations.

  • Concepts in Digital Evidence0:33

    Explore the concepts of digital evidence, key definitions, and terminologies in this introductory module, with topics to be explored more deeply in later modules.

  • Overview1:59

    Maintain a court-ready mindset, treating every action as potential evidence. Learn real, best, direct, circumstantial, and hearsay evidence, plus business records and network-based digital evidence.

  • Background3:00

    Understand digital evidence as information admissible in court, and learn how to form hypotheses and test them against network traffic to build a credible theory.

  • Real Evidence1:49

    Real evidence is tangible and verifiable, from murder weapons and fingerprints to digital packets showing IP addresses, MAC addresses, ports, and services, validating your hypothesis.

  • Best Evidence1:34

    Identify best evidence as the supporting materials that validate the real, tangible evidence in a network forensics case, including photos, timestamps, locations, and captured videos.

  • Direct Evidence1:39

    Direct evidence is first-hand testimonial evidence, including witness accounts or digital data, and network-found data can also serve as direct evidence.

  • Circumstantial Evidence1:58

    Circumstantial evidence is non-direct, yet supports the direct and real evidence with digital clues such as email signatures or files found on a device.

  • Hearsay1:22

    Explore hearsay as second-hand evidence and its variable acceptability in court. Show its usefulness for digital investigators in guiding inquiries toward relevant evidence.

  • Business Records2:52

    View business records as logs and day-to-day network communications, not just contracts, and use anomalies in applications, services, and ports, like telnet on port 23, to guide forensic investigations.

  • Digital Evidence1:06

    Identify digital evidence in network packets by examining every captured packet, including email, instant messaging, and call files, and analyze packet types to uncover information.

  • Network-Based Digital Evidence1:11

    Capture and analyze network traffic to uncover network-based digital evidence. Learn how captured communications become digital evidence using pcap files and standard analysis tools.

  • Section Summary1:40

    Frame a narrative from defined terminology and evidence types, treat everything touched as evidence for court, then form a hypothesis, gather supporting evidence, and evolve it into a theory.

  • Section 1 Quiz

Requirements

  • Must have a Digital or Computer Forensics Certification or equivalent knowledge
  • Working Knowledge of TCP / IP

Description

This course was originally designed only for the U.S. Agency for Government Intelligence. The CNFE certification program is designed to prepare students to master true advanced networking forensics strategies through the use of open source laboratories in an exclusive cyber-range.

The CNFE takes digital and network forensic skills to the next level by navigating through over twenty network forensic theme modules.

The CNFE provides practical training through our laboratory simulations that replicate real-world situations that include the inspection and recovery of network data, Physical Surveillance, Information Collection, Analysis, Wireless Attacks and SNORT.

The course focuses on the centralization and analysis of monitoring mechanisms and networking devices. SIGN UP NOW!

This course was originally designed only for the U.S. Agency for Government Intelligence. The CNFE certification program is designed to prepare students to master true advanced networking forensics strategies through the use of open source laboratories in an exclusive cyber-range.

The CNFE takes digital and network forensic skills to the next level by navigating through over twenty network forensic theme modules.

The CNFE provides practical training through our laboratory simulations that replicate real-world situations that include the inspection and recovery of network data, Physical Surveillance, Information Collection, Analysis, Wireless Attacks and SNORT.

The course focuses on the centralization and analysis of monitoring mechanisms and networking devices. SIGN UP NOW!

Who this course is for:

  • Those IT pros that want to advance their network investigative and incident response handling policies, procedures and techniques.