BSides Munich: /proc for Security Analysts
AbstractIn the intricate landscape of cybersecurity, the ability to uncover hidde 2024-12-13 16:18:49 Author: dfir.ch(查看原文) 阅读量:19 收藏

Abstract

In the intricate landscape of cybersecurity, the ability to uncover hidden threats and analyze system behaviors is paramount.

The /proc filesystem, a critical component of Unix-like operating systems, serves as a treasure trove of real-time data and system information. In this talk, “/proc for Security Analysts,” will delve into the forensic value of /proc, demonstrating how it can be leveraged to detect rootkits, uncover anomalies, and gain a profound understanding of the operating system.

Participants will learn how to navigate and interpret the vast array of data within /proc, equipping them with the skills to enhance their security analyses and bolster system defenses.

Source: Bsides Munich

TODO

Figure 1: /proc for Security Analysts

Youtube Video

/proc for Security Analysts


文章来源: https://dfir.ch/talks/bsides_munich_2024/
如有侵权请联系:admin#unsafe.sh