Skip to content

PRO TIP Block youtube.com at the DNS level — Pi-hole, NextDNS or your hosts file — but allow youtube-nocookie.com and i.ytimg.com. These tutorials keep playing; the rabbit hole does not.

Learning without distractions

Linux forensics – locations of interest – Magnet Forensics Quick Reference Guide part 2

1.2K views on YouTube

Linux forensics – locations of interest – Magnet Forensics Quick Reference Guide part 2

💝♥️❤️ SUBSCRIBE for more videos: https://www.youtube.com/bluemonkey4n6?sub_confirmation=13

Difficulty Level: intermediate
Prerequisites: basic understanding of the linux file system

In this video, we will look at the Quick Reference Guide for Linux Artifacts from Magnet Forensics.

Video timeline
00:00 intro
00:35 Startup Items
03:29 Scheduled Tasks
06:56 System and Application Logs
09:43 System Files

⭕️ For part 1 of the Magnet Forensic Quick Reference Guide: https://youtu.be/4F60s-AM0gM

Download of Linux forensics locations of interest courtesy of Magnet Forensics:

For Linux Artifacts: Targeted Locations Quick Reference Guide

Linux distro:
CAINE  linux (http://www.caine-live.net)

Virtualization software:
Virtual Box (http://virtualbox.org)

Icons made by freepik from @flaticon http://www.flaticon.com/authors/freepik

Icons made by Smashicons from http://www.flaticon.com/authors/smashicons

I am not an employee, contractor, affiliate, representative of Magnet Forensics. This video nor my channel is being sponsored by Magnet. I just thought this information would be useful to those forensic examiners who have to look at a Linux System.

This course was designed to provide information on how to use the command line environment in a Unix/Linux system to accomplish tasks such as imaging, data acquisition, and archiving.  This course covers the basics of Unix/Linux commands that allow users to view and edit text files, obtain hardware and system information, partitioning and formatting, process related commands, manipulating disks and partitions, imaging, archiving, logical acquisition, live system response, and basic networking.

This would be beneficial for folks who are interested in digital forensics, incidence response, system administration, ethical hacking, or just plain linux.  his course covers material for beginners as well as for advanced users. This course would also be helpful if you are considering taking the CompTIA Linux+ certification test.

#DFIR #LinuxForensics #LinuxArtifacts