Linux Forensics with Linux - CTF Walkthrough

Linux Forensics with Linux - CTF Walkthrough

DFIRScience via YouTube Direct link

Cyber5W Linux Forensics CTF

1 of 22

1 of 22

Cyber5W Linux Forensics CTF

Class Central Classrooms beta

YouTube playlists curated by Class Central.

Classroom Contents

Linux Forensics with Linux - CTF Walkthrough

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Cyber5W Linux Forensics CTF
  2. 2 CTF Case Scenario
  3. 3 How this walkthrough works
  4. 4 Download images and setup
  5. 5 Verify Expert Witness Format File E01 with ewfverify
  6. 6 Mount the suspect disk image with ewfmount and mount
  7. 7 Get disk partition offsets with mmls and bc
  8. 8 Mount the partition based on disk offset with mount
  9. 9 Access the suspect system directly with chroot
  10. 10 MATE Q1
  11. 11 MATE Q2
  12. 12 MATE Q3
  13. 13 MATE Q4
  14. 14 MATE Q5
  15. 15 MATE Q6
  16. 16 Switching to the Kubuntu image
  17. 17 KUBUNTU Q1
  18. 18 KUBUNTU Q2
  19. 19 KUBUNTU Q3
  20. 20 KUBUNTU Q4
  21. 21 KUBUNTU Q5
  22. 22 Clean up and conclusions

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.