Volatility 3 — the rewritten RAM analysis framework. No more profiles, new linux.* plugin syntax, installation, and a practical incident analysis example.
Posts for: #Memory
Volatility — Linux RAM Forensics and Analysis
Introduction to Volatility — a framework for analyzing RAM dumps. Profiles, plugins, and a practical example of analyzing a compromised Linux server.
Linux OOM Killer — The Process Assassin You Need to Know
What is the Linux OOM Killer, how does it choose which process to terminate, and how can you protect critical services from being killed when memory runs out.