An analysis of Linux RAM forensics
During a forensic investigation of a computer system, the ability to retrieve volatile information can be of critical importance. The contents of RAM could reveal malicious code running on the system that has been deleted from the hard drive or, better yet, that was never resident on the hard drive...
Main Author: | Urrea, Jorge Mario. |
---|---|
Other Authors: | Eagle, Christopher S. |
Format: | Others |
Published: |
Monterey, California. Naval Postgraduate School
2012
|
Subjects: | |
Online Access: | http://hdl.handle.net/10945/2933 |
Similar Items
-
Bloom Filters for Filesystem Forensics
by: Bourg, Rachel
Published: (2006) -
DFMF : a digital forensic management framework
by: Grobler, Cornelia Petronella
Published: (2012) -
Temporal analysis on HFS+ and across file systems in digital forensic investigation
by: Wang, Mengmeng, et al.
Published: (2013) -
Automating case reports for the analysis of digital evidence
by: Cassidy, Regis H. Friend
Published: (2012) -
A comparison of open source and proprietary digital forensic software
by: Sonnekus, Michael Hendrik
Published: (2015)