~/giac-glir · Evidence Collection and Mounting ▊
← GIAC Linux Incident Responder
GIAC · objective · 8% of the exam
Evidence Collection and Mounting — GIAC Linux Incident Responder
The official GIAC documentation our Evidence Collection and Mounting practice questions are cited to. Review the primary sources, then practise.
Official references for this objective
-
Sans — FOR577: LINUX Incident Response and Threat Hunting | SANS Institute
Being able to acquire data soundly from both physical and virtual systems, and to mount the resulting RAW and E01 images, ensures that evidence is