An analysis of Linux RAM forensics

During a forensic investigation of a computer system, the ability to retrieve volatile information can be of critical importance. The contents of RAM could reveal malicious code running on the system that has been deleted from the hard drive or, better yet, that was never resident on the hard drive...

Full description

Bibliographic Details
Main Author: Urrea, Jorge Mario.
Other Authors: Eagle, Christopher S.
Format: Others
Published: Monterey, California. Naval Postgraduate School 2012
Subjects:
Online Access:http://hdl.handle.net/10945/2933