How to collect memory-only filesystems on Linux systems, (Wed, Oct 29th)

I've been doing Unix/Linux IR and Forensics for a long time. I logged into a Unix system for the first time in 1983. That's one of the reasons I love teaching FOR577[1], because I have stories that go back to before some of my students were even born that are still relevant today.

This article has been indexed from SANS Internet Storm Center, InfoCON: green

Read the original article: