On 12/29/06, Danny Ching <[EMAIL PROTECTED]> wrote:
On 12/29/06, Ariz Jacinto <[EMAIL PROTECTED]> wrote:
> you must be referring to the OSI layer (
> http://en.wikipedia.org/wiki/OSI_model )
> which is indeed an abstract description for communications _but_ it doesn't
> apply
> to the procedural digital forensics.
My bad. i wasn't refering to the forensics in the matter. I was more
concerned about getting services up first. You know, baka magalit ang
mga boss at mga clients and all that.
Is that the right way to do it? or would it also obliterate any traces
of the culprit? should a cpu with problems like these be treated like
a crime scene. As in bawal galawin? I know the steps to restoration,
but I have no experience in forensics eh.
I don't see why you shouldn't treat it like a crime scene. If the
incident was a result of a crime, then you can use forensics to trace
the attacker and know how the attack was made. Then you can prevent
the attack from happening again.
_________________________________________________
Philippine Linux Users' Group (PLUG) Mailing List
[email protected] (#PLUG @ irc.free.net.ph)
Read the Guidelines: http://linux.org.ph/lists
Searchable Archives: http://archives.free.net.ph