Notifications
Clear all

Linux Forensics

4 Posts
3 Users
0 Reactions
685 Views
(@tootypeg)
Estimable Member
Joined: 18 years ago
Posts: 173
Topic starter  

Hi guys,

Are there any books, online repositories or information regarding analysis of Linux OS's (ubuntu for example)? Im interested in finding out a bit more about the artefact types etc


   
Quote
(@belkasoft)
Estimable Member
Joined: 17 years ago
Posts: 169
 

Depending on what exactly you're looking for, Linux may have artefacts that are similar to other systems. For example, many instant messengers in Linux make use of SQLite databases, allowing you to use any SQLite analysis tool to extract conversations.


   
ReplyQuote
(@tootypeg)
Estimable Member
Joined: 18 years ago
Posts: 173
Topic starter  

Thanks for your reply.

However, I was thinking less along the lines of 3rd party software installations and more about the artefacts which come as part of the OS itself, if that makes sense.


   
ReplyQuote
HexDrugsRockNRoll
(@hexdrugsrocknroll)
Trusted Member
Joined: 17 years ago
Posts: 60
 

I've used this book a couple of times on the few Linux examinations I've been involved in

http//www.amazon.co.uk/UNIX-Forensic-Analysis-DVD-Toolkit/dp/1597492698

No complaints.


   
ReplyQuote
Share: