Forensics tools in puppy linux? Can detect the intruder?

For discussions about security.
Post Reply
Message
Author
EBored
Posts: 32
Joined: Wed 29 Apr 2020, 00:29

Forensics tools in puppy linux? Can detect the intruder?

#1 Post by EBored »

Secure, privacy - live usb/dvd lite distro ?
Level of intruders - sociopaths, criminal groups, surveillance of finances and sensitive target data.

Puppy linux can detect the intruder?

How make forensics tools in puppy linux.

CAINE Live USB/DVD - computer forensics digital forensics
NEW! CAINE 11.0 "Wormhole" is out! CAINE 11.0 "Wormhole" 64bit Official CAINE GNU/Linux distro latest release. CAINE (Computer Aided INvestigative Environment) is an Italian GNU/Linux live distribution created as a Digital Forensics project Currently the project manager is Nanni Bassetti (Bari - Italy). CAINE offers a complete forensic environment that is organized to integrate existing ...

Autopsy | Digital Forensics
[Search domain www.autopsy.com] https://www.autopsy.com
Autopsy® is the premier end-to-end open source digital forensics platform. Built by Basis Technology with the core features you expect in commercial forensic tools, Autopsy is a fast, thorough, and efficient hard drive investigation solution that evolves with your needs.

Autopsy
[Search domain www.sleuthkit.org/autopsy/] www.sleuthkit.org/autopsy/
Autopsy® is a digital forensics platform and graphical interface to The Sleuth Kit® and other digital forensics tools. It is used by law enforcement, military, and corporate examiners to investigate what happened on a computer. You can even use it to recover photos from your camera's memory card.

Possible tools to real time detect and collect evidence ?

EBored
Posts: 32
Joined: Wed 29 Apr 2020, 00:29

#2 Post by EBored »


EBored
Posts: 32
Joined: Wed 29 Apr 2020, 00:29

#3 Post by EBored »

How usefull is it ?

https://cyber.gc.ca/en/assemblyline
NCSC programme tackling cyber attacks
https://www.ncsc.gov.uk/section/product ... er-defence
https://www.atg-it.co.uk/security/ncscs ... ess-guide/

Tools from this agencies ?
National Security Agency (NSA),
UK's National Cyber Security Center (NCSC),
Canadian Centre for Cyber Security.

https://www.bleepingcomputer.com/news/s ... -networks/

lsof -i will show any intruder.

To much information !
Last edited by EBored on Mon 06 Jul 2020, 19:44, edited 2 times in total.

musher0
Posts: 14629
Joined: Mon 05 Jan 2009, 00:54
Location: Gatineau (Qc), Canada

#4 Post by musher0 »

Hello EBored.

For the record, CAINE is a distro, so cannot be incorporated in PuppyLinux.

Personally, I find PuppyLinux very secure, if you make regular backups of your
pupsave file. It's the only part of Puppy that could be tampered with, since you
have a copy of your OS in an *.iso file.

(edit begins)
There are a plethora of threads on this board discussing Puppy as an
(absolutely?) secure system. So I won't repeat what has been said. Please
do a bit of research with the forum search tool at top, and you'll see.

The only addition I like for security purpose is lsof, with the -i parameter,
which I run a couple of times during my session.

Code: Select all

lsof -i
will show any intruder.
(edit ends)
BFN.
Last edited by musher0 on Tue 07 Jul 2020, 01:31, edited 4 times in total.
musher0
~~~~~~~~~~
"You want it darker? We kill the flame." (L. Cohen)

User avatar
Flash
Official Dog Handler
Posts: 13071
Joined: Wed 04 May 2005, 16:04
Location: Arizona USA

#5 Post by Flash »

Saying that Puppy is absolutely secure is tempting fate.

If you run Puppy from a multisession DVD-R or BD-R and save the session after an ill-considered night on the web, for forensic purposes you can boot your multisession Puppy with the pfix=ram boot option, then mount the multisession DVD or BD disk and compare the files of the original Puppy on the disk with those in the saved sessions on the disk. This sort of forensic analysis is not possible if you run Puppy from erasable, re-writable media such as hard disk drives or USB flash drives.

EBored
Posts: 32
Joined: Wed 29 Apr 2020, 00:29

#6 Post by EBored »


User avatar
Flash
Official Dog Handler
Posts: 13071
Joined: Wed 04 May 2005, 16:04
Location: Arizona USA

#7 Post by Flash »

How to use what?

Post Reply