What You Need to Know Before
You Start

Starts 5 July 2025 12:33

Ends 5 July 2025

00 Days
00 Hours
00 Minutes
00 Seconds
course image

Why Are They Asking Me to Do This? or Adventures in IR Land

linux.conf.au via YouTube

linux.conf.au

2777 Courses


27 minutes

Optional upgrade avallable

Not Specified

Progress at your own speed

Conference Talk

Optional upgrade avallable

Overview

Syllabus

  • Introduction to Incident Response (IR)
  • Basics of Incident Response
    Overview of Linux systems in IR
    Understanding Linux Malware: Current Threat Landscape
  • Preparation Phase
  • Building an Incident Response Team
    Essential Tools and Software for Linux IR
    Documentation and Policy Development
    Training and Awareness Programs
  • Detection and Monitoring
  • Setting Up System and Network Monitoring
    Use of Intrusion Detection Systems on Linux
    Identifying Anomalous Behavior and Indicators of Compromise
  • Analysis Techniques
  • Forensic Analysis of Linux Systems
    Log Analysis and Management
    Memory and Disk Imaging
    Utilizing Linux-native Analysis Tools
  • Containment Strategies
  • Quarantine Methods for Infected Systems
    Network Segmentation and Isolation
    Eradication Procedures for Linux Malware
  • Recovery and Post-Incident Actions
  • System Restoration Techniques
    Reinforcement of Security Measures
    Incident Reporting and Documentation
  • Case Studies and Practical Exercises
  • Analyzing Real-world Linux IR Cases
    Hands-on Lab Sessions: Simulated Incident Response
    Group Debrief and Lessons Learned
  • Final Assessment and Course Wrap-up
  • Review of Key Concepts
    Final Project Presentation
    Course Feedback and Future Learning Paths

Subjects

Conference Talks