Linux and Forensics
Linux is a very important topic for anyone studying forensics. The first and most obvious reason is that one might need to examine a Linux machine in the course of a forensic investigation. Linux is quite popular in certain areas of the computing community, particularly in web servers. If you should need to investigate a web breach, there is a reasonable chance that it could include a Linux machine.
Another reason to study Linux is that it is the operating system that Android is based on. In Chapter 10, we will look at Android and other mobile devices. The more you understand about Linux itself, the more you will understand Android phones and tablets. Obviously, this single chapter cannot make you an expert in Linux, but ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access