BigHugger
sk Skill · mukul975

performing-linux-log-forensics-investigation

Perform forensic investigation of Linux system logs including syslog, auth.log, systemd journal (via journalctl), kern.log, auditd, and application logs to reconstruct user sessions, identify unauthorized access and privilege escalation, trace lateral movement, and establish event timelines. Use when investigating a suspected compromise of a Linux system and needing to analyze SSH, sudo, cron, or kernel-level…

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
pythonlog-analysislinux-logsbashaudit-logjournalctlcronsystemd-journalssh-forensicsauth-logPythonsysloglinux-forensics
Host repository
mukul975/Anthropic-Cybersecurity-Skills
Version
1.0
Licence
Apache-2.0
Host stars
33k
Host language
Python