Linux Today: Linux News On Internet Time.
Search Linux Today
Linux News Sections:  Blog -  Developer -  High Performance -  Infrastructure -  IT Management -  Security -  Storage -
Linux Today Navigation
LT Home
Preferences
Contribute
Link to Us
Search
Linux Jobs

Linux Today
Enterprise Linux Today
Apache Today
JustLinux.com
Linux Planet
PHPBuilder
All Linux Devices
Technology Jobs

JustTechJobs.com

LinuxToday Newsletters
Server Daily
IT Management Daily
Subscribe News
Subscribe PR
Subscribe Security

internet.com
Internet News
Small Business

Advertise
Newsletters
Tech Jobs
E-mail Offers

 






Current Newswire:

5 Best Android Apps For Reddit Lovers

SECURITY: Flash Player Sandbox Comes to Firefox

The Future of Kubuntu

SECURITY: Symantec should not be afraid of 'open' source code

Linux 3.3 rc3

60 Fantastic Free Android Apps

Ready for Another Linux Tablet? Meet the Rugged Trimble Yuma

How can the layman get involved with free software?

RIM Commits to Open Source BlackBerry 10 Native SDK

Oracle Staking Claim in Open-Source 'R' Language



Applications Management Engineer Sr (NYC)
Next Step Systems
US-NY-New York

Justtechjobs.com Post A Job | Post A Resume
:Security Portal: Computer Crime Investigator's Toolkit: Part I
Security Portal: Computer Crime Investigator's Toolkit: Part I
Jan 3, 2001, 07 :44 UTC (0 Talkback[s]) (6449 reads)

(Other stories by Ronald L. Mendell)

"What I've tried to do is devise a summary of basic, practical knowledge, "tricks," if you like, that should interest all computer crime investigators. While they may not be the final word in preparing for an examination, these techniques will provide some insight into the ways and means of computer criminals. I hope to get you into the spirit of the hunt. Learning to think how a criminal looks at twisting, altering, hiding, and diverting information will definitely make the game more interesting. This is a pathfinder, a starting point to discovering other resources...."

"Unix serves as a wonderful training ground for computer security specialists. It teaches about access permissions for objects; learning about those rwx's in directory listings gives one an appreciation for granular security. It builds on MS-DOS knowledge: hidden files are "dot files" in Unix. They become visible by the "ls-al" command (very similar to dir /a:h). Unix expands on MS-DOS' piping and redirection capabilities. Searching or manipulating files and directories using FIND and SORT, an investigator, for example, can search a directory for inactive files (by date) and pipe the results into a report file."

"Using Unix's scripting capabilities (similar to DOS batch files), an investigator may create combinations of commands into specialized programs to conduct security audits and to do file checking as a part of an inquiry. The GREP command searches files or directories that contain a particular character string. This capability provides for granular searching."

Complete Story

Related Stories:
SunWorld: Forensics - Getting to the bottom of a security breach(Aug 06, 2000)
Dan & Wietse's Forensics Tools released(Aug 01, 2000)
LanSystems.com: Secure your box(Jul 31, 2000)
LinuxPlanet: .comment: Service Security -- Where Is It?(Jul 19, 2000)
Security Portal: Securing Your Home Network(Jul 18, 2000)
Linux.com: Bastille Linux Review(Jun 20, 2000)
TechRepublic: Linux 101: Basic network security(Jun 10, 2000)
RootPrompt.org: Know Your Enemy: A Forensic Analysis(Jun 07, 2000)
SiteReview.org: Unix's poor Internet Security Reputation(May 17, 2000)
BW: Network ICE Offers First Intrusion Detection System for Linux(May 08, 2000)
SecurityFocus: Building a Linux Bunker: Basic Firewalling(May 08, 2000)
RootPrompt.org: Cracked! Part 1: Denial and Truth(May 03, 2000)



No talkbacks posted.
  Home | Search Talkbacks | Customize View    Top of Page  



Enter your comments below:

* Your Name:

* Your Email Address:

* Subject:

CC: [will also send this talkback to an E-Mail address]

* Comments:

Tags allowed:<I>,<B> and <U>. See our talkback-policy for more about talkback content.

Fields marked with * are required!

..............................




All times are recorded in UTC.
Linux is a trademark of Linus Torvalds.
Powered by Linux, Apache and PHP