Here are my study notes as I learn Linux digital forensics and incident response.
I'm starting with Bruce Nikkel's Practical Linux Forensics. I plan to expand into memory forensics, incident response, as well as cloud and container topics.
- My hands-on Linux DFIR investigations: linux-dfir-investigations