A compromised Linux server tells its story — to whoever can read it. This module teaches you Linux forensics: traces, persistence, file recovery, memory analysis.
• Collect Linux evidence (live and image) • Analyse logs and persistence • Recover files via carving • Analyse memory and conclude