Aug 242007
I found an excellent article describing how to analyze a cracked Linux machine – I’ve had some experience with similar efforts on Windows in the past, but (so far) have been lucky enough not to have to do it on a Linux/Unix host. Serves as a good guide on how to break down a crack step by step, though the elementary mistakes made by the cracker certainly made things easier – it would not have been hard to do this in a way that would have been far more difficult to detect/correct.
So, for all of those people that think that non-Windows machines are bullet proof, take note.
Technorati Tags: Linux, cracker, forensics, security