Difference between revisions of "Case Studies"
From SleuthKitWiki
m (Undo revision 11267 by Apriestman (talk)) |
Apriestman (Talk | contribs) m (Reverted edits by B8713ka (talk) to last revision by Apriestman) |
||
(18 intermediate revisions by 6 users not shown) | |||
Line 3: | Line 3: | ||
Scan of the Month #29 - Linux VMWare (September 2003) | Scan of the Month #29 - Linux VMWare (September 2003) | ||
− | * [http:// | + | * [http://www.honeynet.org/scans/scan29/ The Challenge] |
− | * [http://www. | + | * [http://www.sleuthkit.org/case/sotm_29/index.html Report] |
Scan of the Month #26 - FAT 12 Floppy - Part 2 (February 2003) | Scan of the Month #26 - FAT 12 Floppy - Part 2 (February 2003) | ||
− | * [http:// | + | * [http://www.honeynet.org/scans/scan26/ The Challenge] |
− | * [http://www. | + | * [http://www.sleuthkit.org/case/sotm_26/index.html Report] |
Scan of the Month #24 - FAT 12 Floppy - Part 1 (October 2002) | Scan of the Month #24 - FAT 12 Floppy - Part 1 (October 2002) | ||
* [http://www.honeynet.org/scans/scan24/ The Challenge] | * [http://www.honeynet.org/scans/scan24/ The Challenge] | ||
− | * [http://www. | + | * [http://www.sleuthkit.org/case/sotm_24/index.html Report] |
Scan of the Month #15 - Recover a deleted Linux rootkit (May 2001) | Scan of the Month #15 - Recover a deleted Linux rootkit (May 2001) | ||
− | * [http://www. | + | * [http://www.honeynet.org/scans/scan15/ The Challenge] |
− | * [http:// | + | * [http://www.sleuthkit.org/case/sotm_15/index.html Report] |
=Other= | =Other= | ||
If you have examples of how TSK or Autopsy were used in an investigation, please provide a link here. | If you have examples of how TSK or Autopsy were used in an investigation, please provide a link here. |
Latest revision as of 05:03, 12 February 2018
Honeynet Challenges
The following were written as "official" reports for challenges from the Honeynet Project and provide examples of how to use TSK and Autopsy.
Scan of the Month #29 - Linux VMWare (September 2003)
Scan of the Month #26 - FAT 12 Floppy - Part 2 (February 2003)
Scan of the Month #24 - FAT 12 Floppy - Part 1 (October 2002)
Scan of the Month #15 - Recover a deleted Linux rootkit (May 2001)
Other
If you have examples of how TSK or Autopsy were used in an investigation, please provide a link here.