Join Patterson Cake, Director of Incident Response at Black Hills Infosec, as he guides through his “rapid endpoint investigations” workflow for the “other” (not Windows) Operating System…*Nix (Linux/Mac).
We’ll learn how to select, acquire, and analyze Linux and Mac investigative artifacts, using Velociraptor offline collector, CatScale, and UAC scripts.
Windows gets a lot of attention and rightfully so!
However, Linux and Mac are part of every enterprise ecosystem and represent a critical attack surface. You need a simple, effective, repeatable plan for investigating these endpoints.
Podden och tillhörande omslagsbild på den här sidan tillhör
Antisyphon Training. Innehållet i podden är skapat av Antisyphon Training och inte av,
eller tillsammans med, Poddtoppen.