In the context of digital forensics, live forensics or live response is the process of collecting data from, responding to incidents, and forensically analyzing systems that are still running.
live forensics
0001-01-01
Recent Posts
Defanging Linux LKM Rootkits With cleanup_module()
2025-04-04 Linux LKM rootkits EDR hooks incident response Linux LKM rootkit
Linux Persistence: atd
2025-04-01 DFIR CTF linux persistence at atd
Linux Persistence: SSH
2025-03-29 DFIR CTF SSH hardening hunting persistence linux persistence hunting hardening SSH PAM