Penetration Testing mailing list archives

Re: [PEN-TEST] Forensic analisys and related training


From: anindya <anindya () GOONDA ORG>
Date: Mon, 16 Oct 2000 18:32:15 -0400

1- Any links related to downloadable papers about forensic data analysis and
donwloadable tools?

The Coroner's Toolkit is a package put together by Wietse Venema,
intended to do post-mortems on Unix systems.

http://the.wiretapped.net/security/host-security/coroners-toolkit/

There are a bunch of papers out there, but Dave Dittrich's paper
is a nice intro to doing forensics on Unix systems:

http://staff.washington.edu/dittrich/misc/forensics/

Hope this helps,
--Anindya


Current thread: