I’ve read that establishing a full-packet capture system for outbound traffic is the best way to confirm what did or didn’t leave the network in the event of a suspected breach event. What’s the cheapest and most efficient to implement a full-packet capture systemif we don’t have one today and don’t want to invest in new hardware or software?
