Well, how? Share with us!
Conversation
Notices
-
It's FOSS (itsfoss@mastodon.social)'s status on Thursday, 30-Nov-2023 13:30:59 JST It's FOSS -
anion (ionisland@mastodon.social)'s status on Thursday, 30-Nov-2023 13:39:30 JST anion @itsfoss Linux unlocked a world of computing where I'm in full control and everything imaginable is suddenly possible, and that felt like a breath of fresh air after a long time of closed source computing/software with that desktop OS that shall not be named
-
Philip Wittamore (venelles@mastodon.social)'s status on Thursday, 30-Nov-2023 15:51:52 JST Philip Wittamore @itsfoss gave me a fun alternative to windows in 1995, got me a job in IT in 1999, kept my sanity in a tsunamu of advertising pretending to be operating systems, keeps me occupied now I'm retired
-
It's FOSS (itsfoss@mastodon.social)'s status on Thursday, 30-Nov-2023 17:05:52 JST It's FOSS @venelles Nice!
-
It's FOSS (itsfoss@mastodon.social)'s status on Thursday, 30-Nov-2023 17:07:10 JST It's FOSS @avlcharlie A great decision. 😄
-
It's FOSS (itsfoss@mastodon.social)'s status on Thursday, 30-Nov-2023 17:08:54 JST It's FOSS @ksaj That is so cool!
-
Karsten Johansson (ksaj@infosec.exchange)'s status on Thursday, 30-Nov-2023 17:08:55 JST Karsten Johansson @itsfoss I used to do Forensics gigs (I'm pretty much retired these days), even though I have 11 years to go before it becomes official.
I was lucky (?) enough to be on a defendant's team, and got direct permission to do things most forensics teams cannot do at each stage of the way.
Without getting technical about it, it was abundantly clear the defendant was lying to us, and had actually re-installed their OS 3 times, with each time the evidence magically reappearing. I was also able to prove that there was no back door, and that everything dealing with the evidence was done from the GUI and not command line, and that a "shocking" amount of the activity happened when he was home alone.
Windows keeps track of recently opened files. Slackspace keeps those around a long time. Linux was happy to dig those things up flawlessly.
Given all the work I accomplished in the time allotted, there is no way I could have done it with Encase or any of the other court standards.
And the evidence was accepted, because it was easy to prove that the drive image was pristine and stayed that way throughout the investigation.
I think I should write a whitepaper about what I did on the case, because I've not seen the techniques described anywhere else. It's the only case I handled that particular way.
GNU/Linux made it slobberproof, and perfectly admissible in court. It helps that I found everything the police forensics had reported, and nothing conflicted. The fact that I found so much more than they did was pure gold.
-
@drewscorner (dragonbite@mastodon.social)'s status on Thursday, 30-Nov-2023 22:27:09 JST @drewscorner @itsfoss It gave me server and programming tools I would otherwise not have access to (for more than 120 days) to learn and assess as well as a secure desktop and learned a lot about how computers actually work.
-
Gabo Gaona (gavg712@mastodon.social)'s status on Sunday, 03-Dec-2023 08:06:06 JST Gabo Gaona @itsfoss
#GNULinux is the only OS that I could customize with just all I need and no more extra undesired software
-