Sveriges mest populära poddar

Digital Forensic Survival Podcast

DFSP # 445 Bash Triage

27 min • 27 augusti 2024

Bash history's forensic value lies in its ability to answer diverse investigative questions, making it a cornerstone artifact for Linux systems. It aids in triaging lateral movement, identifying reconnaissance activities, and detecting attempts at establishing persistence. This underscores the importance of structuring triage tasks around specific investigative questions, facilitating focused analysis amidst potentially extensive Bash history records...

Förekommer på
00:00 -00:00