From this week's Linux Update newsletter, Chris Binnie explores techniques for Digital Forensics and Incident Response to assess the damage after an attack
https://www.linux-magazine.com/index.php/Issues/2024/286/Digital-Forensics-and-Incident-Response
#DFIR #attack #security #malware #Linux #REMnux #TsurugiLinux #OSINT
Great article! I liked that one can recover a running deleted binary that easily:
cp /proc//exe ~/recovered