SEARCH
TOOLBOX
LANGUAGES
Linux Forensics Workshop

Linux Forensics Workshop

From BruCON 2017

Revision as of 23:29, 26 August 2014 by Znb (talk | contribs) (Created page with "This hands-on workshop is a rapid introduction to key artefacts and techniques for investigating compromised Linux systems using Linux tools. Part 1 covers collecting and ana...")

(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to: navigation, search

This hands-on workshop is a rapid introduction to key artefacts and techniques for investigating compromised Linux systems using Linux tools. Part 1 covers collecting and analyzing disk and memory evidence, showing you where to look and introducing tools every investigator should know. Part 2 is a deep-dive into the Linux EXT file system family, including recovery of deleted data and data from damaged file systems.