Network Security Consulting Agency Since 1989 - Specialized in Unix, Windows, TCP/IP and Internet
You are here
:
Home
>
Resources
>
Lectures
> Intervention after compromision of a Unix server
Go to:
HSC Trainings
Search
:
Services
Skills & Expertise
Consulting
ISO 27001 services
Vulnerabilities monitoring
Audit & Assessment
Penetration tests
Vunerability assessment (TSAR)
Forensics
ARJEL
Training courses
E-learning
Conferences
Agenda
Past events
Tutorials
Resources
Thematic index
Tips
Lectures
Courses
Articles
Tools (download)
Vulnerability watch
Company
Hervé Schauer
Team
Job opportunities
Credentials
History
Partnerships
Associations
Press and
communication
HSC Newsletter
Press review
Press releases
Publications
Contacts
How to reach us
Specific inquiries
Directions to our office
Hotels near our office
Intervention after compromision of a Unix server
Access to the content
Beginning of the presentation
Description
Report on an investigation after an incident and experience of quickly cleaning a compromised Solaris server.
Context & Dates
Talk made before the
SUR group from the OSSIR
, on 11 July 2000.
Author
Frédéric Lavécot
Type
14 slides [
-
]
Abstract &
Table of content
Flyleaf
La victime
Activité surprenante
Traces réseau
Stacheldraht
Services ouverts
Détection de la falsification du système
Preuves de la falsification du système
Informations diverses
Le rootkit
Solution
Information complémentaire
Les motivations du pirate
Conclusion
Related documents
Incidents
Logging and incident processing
[15 May 2008 -
]
Logs and incident processing
[29 March 2007 -
]
Software vulnerabilities: latest trends and possible solutions
[23 March 2005 -
]
Vulnerabilities: from discovery to exploitation
[4 November 2004 -
]
Antimap
[20 November 2001 -
]
How to react (technicaly) in case of intrusion
[21 October 2000 -
]
Copyright
© 2000, Hervé Schauer Consultants, all rights reserved.
Last modified on 17 April 2002 at 17:24:20 CET - webmaster@hsc.fr
Information on this server
- © 1989-2010 Hervé Schauer Consultants