4buntu is a set of instructions that allows you create a Digital Forensic Analyst workstation starting with an Ubuntu workstations as the base.
Be the first to post a text review of 4buntu. Rate and review a project by clicking thumbs up or thumbs down in the right column.
8.04-011 Added ngrep and netsed New Script: build-ir.sh This is small script to be used on any Linux system to help create a set of binaries and required libraries to be install on to a CD. The binaries are a small subset of Linux commands to be used in a live forensic investigation. Note that the script does not contain the binaries. It extract them from the system you run it on. The concept is to have a set of command from a trusted system. The script was tested on Ubuntu 8.04. It should work on any distro. 8.04-010 June 13, 2009 @ 15:30 ET win32dd folder 8.04-009 June 13, 2009 @ 15:15 ET foretools directoy bug was fixed 8.04-008 June 13, 2009 @ 14:50 ET Some script errors were fixed 8.04-007 June 13, 2009 Fixed issues with volatility plugins. Added foretools read only share 8.04-006 This is a major change. Several new packages and features were added. Here is a list of some of the enhancements: 1- Diskmounter icon on the root desktop. Still auto-mount is turned off, as it should. But now you can mount via this applet. 2- Several TCP/IP tools like tcpflow, tcpdstat, tcpslice. 3- Snort was added 4- Samba was enabled and a sore called foreshare is made available as a means to move data in and out of th forensic station. 8.04-005 1- Minor documentation corrections ========================================================== 8.04-004 Introduced many changes here are the most important ones: 1- Caine is the recommended platform (although still installs on a plain Ubuntu 8.04) 2- Manual prep of the root account by the user is no longer required. The script completely configures the root account. 3- The script decides which packages to install based on target system (Caine or Ubuntu) 4- Installation is done now with the sudo command
8.04-011 Added ngrep and netsed New Script: build-ir.sh This is small script to be used on any Linux system to help create a set of binaries and required libraries to be install on to a CD. The binaries are a small subset of Linux commands to be used in a live forensic investigation. Note that the script does not contain the binaries. It extract them from the system you run it on. The concept is to have a set of command from a trusted system. The script was tested on Ubuntu 8.04. It should work on any distro. 8.04-010 June 13, 2009 @ 15:30 ET win32dd folder 8.04-009 June 13, 2009 @ 15:15 ET foretools directoy bug was fixed 8.04-008 June 13, 2009 @ 14:50 ET Some script errors were fixed 8.04-007 June 13, 2009 Fixed issues with volatility plugins. Added foretools read only share 8.04-006 This is a major change. Several new packages and features were added. Here is a list of some of the enhancements: 1- Diskmounter icon on the root desktop. Still auto-mount is turned off, as it should. But now you can mount via this applet. 2- Several TCP/IP tools like tcpflow, tcpdstat, tcpslice. 3- Snort was added 4- Samba was enabled and a sore called foreshare is made available as a means to move data in and out of th forensic station. 8.04-005 1- Minor documentation corrections ========================================================== 8.04-004 Introduced many changes here are the most important ones: 1- Caine is the recommended platform (although still installs on a plain Ubuntu 8.04) 2- Manual prep of the root account by the user is no longer required. The script completely configures the root account. 3- The script decides which packages to install based on target system (Caine or Ubuntu) 4- Installation is done now with the sudo command
8.04-011 Added ngrep and netsed New Script: build-ir.sh This is small script to be used on any Linux system to help create a set of binaries and required libraries to be install on to a CD. The binaries are a small subset of Linux commands to be used in a live forensic investigation. Note that the script does not contain the binaries. It extract them from the system you run it on. The concept is to have a set of command from a trusted system. The script was tested on Ubuntu 8.04. It should work on any distro. 8.04-010 June 13, 2009 @ 15:30 ET win32dd folder 8.04-009 June 13, 2009 @ 15:15 ET foretools directoy bug was fixed 8.04-008 June 13, 2009 @ 14:50 ET Some script errors were fixed 8.04-007 June 13, 2009 Fixed issues with volatility plugins. Added foretools read only share 8.04-006 This is a major change. Several new packages and features were added. Here is a list of some of the enhancements: 1- Diskmounter icon on the root desktop. Still auto-mount is turned off, as it should. But now you can mount via this applet. 2- Several TCP/IP tools like tcpflow, tcpdstat, tcpslice. 3- Snort was added 4- Samba was enabled and a sore called foreshare is made available as a means to move data in and out of th forensic station. 8.04-005 1- Minor documentation corrections ========================================================== 8.04-004 Introduced many changes here are the most important ones: 1- Caine is the recommended platform (although still installs on a plain Ubuntu 8.04) 2- Manual prep of the root account by the user is no longer required. The script completely configures the root account. 3- The script decides which packages to install based on target system (Caine or Ubuntu) 4- Installation is done now with the sudo command
8.04-011 Added ngrep and netsed New Script: build-ir.sh This is small script to be used on any Linux system to help create a set of binaries and required libraries to be install on to a CD. The binaries are a small subset of Linux commands to be used in a live forensic investigation. Note that the script does not contain the binaries. It extract them from the system you run it on. The concept is to have a set of command from a trusted system. The script was tested on Ubuntu 8.04. It should work on any distro. 8.04-010 June 13, 2009 @ 15:30 ET win32dd folder 8.04-009 June 13, 2009 @ 15:15 ET foretools directoy bug was fixed 8.04-008 June 13, 2009 @ 14:50 ET Some script errors were fixed 8.04-007 June 13, 2009 Fixed issues with volatility plugins. Added foretools read only share 8.04-006 This is a major change. Several new packages and features were added. Here is a list of some of the enhancements: 1- Diskmounter icon on the root desktop. Still auto-mount is turned off, as it should. But now you can mount via this applet. 2- Several TCP/IP tools like tcpflow, tcpdstat, tcpslice. 3- Snort was added 4- Samba was enabled and a sore called foreshare is made available as a means to move data in and out of th forensic station. 8.04-005 1- Minor documentation corrections ========================================================== 8.04-004 Introduced many changes here are the most important ones: 1- Caine is the recommended platform (although still installs on a plain Ubuntu 8.04) 2- Manual prep of the root account by the user is no longer required. The script completely configures the root account. 3- The script decides which packages to install based on target system (Caine or Ubuntu) 4- Installation is done now with the sudo command
New Script: build-ir.sh This is small script to be used on any Linux system to help create a set of binaries and required libraries to be install on to a CD. The binaries are a small subset of Linux commands to be used in a live forensic investigation. Note that the script does not contain the binaries. It extract them from the system you run it on. The concept is to have a set of command from a trusted system. The script was tested on Ubuntu 8.04. It should work on any distro. 8.04-010 June 13, 2009 @ 15:30 ET win32dd folder 8.04-009 June 13, 2009 @ 15:15 ET foretools directoy bug was fixed 8.04-008 June 13, 2009 @ 14:50 ET Some script errors were fixed 8.04-007 June 13, 2009 Fixed issues with volatility plugins. Added foretools read only share 8.04-006 This is a major change. Several new packages and features were added. Here is a list of some of the enhancements: 1- Diskmounter icon on the root desktop. Still auto-mount is turned off, as it should. But now you can mount via this applet. 2- Several TCP/IP tools like tcpflow, tcpdstat, tcpslice. 3- Snort was added 4- Samba was enabled and a sore called foreshare is made available as a means to move data in and out of th forensic station. 8.04-005 1- Minor documentation corrections ========================================================== 8.04-004 Introduced many changes here are the most important ones: 1- Caine is the recommended platform (although still installs on a plain Ubuntu 8.04) 2- Manual prep of the root account by the user is no longer required. The script completely configures the root account. 3- The script decides which packages to install based on target system (Caine or Ubuntu) 4- Installation is done now with the sudo command
New Script: build-ir.sh This is small script to be used on any Linux system to help create a set of binaries and required libraries to be install on to a CD. The binaries are a small subset of Linux commands to be used in a live forensic investigation. Note that the script does not contain the binaries. It extract them from the system you run it on. The concept is to have a set of command from a trusted system. The script was tested on Ubuntu 8.04. It should work on any distro. 8.04-010 June 13, 2009 @ 15:30 ET win32dd folder 8.04-009 June 13, 2009 @ 15:15 ET foretools directoy bug was fixed 8.04-008 June 13, 2009 @ 14:50 ET Some script errors were fixed 8.04-007 June 13, 2009 Fixed issues with volatility plugins. Added foretools read only share 8.04-006 This is a major change. Several new packages and features were added. Here is a list of some of the enhancements: 1- Diskmounter icon on the root desktop. Still auto-mount is turned off, as it should. But now you can mount via this applet. 2- Several TCP/IP tools like tcpflow, tcpdstat, tcpslice. 3- Snort was added 4- Samba was enabled and a sore called foreshare is made available as a means to move data in and out of th forensic station. 8.04-005 1- Minor documentation corrections ========================================================== 8.04-004 Introduced many changes here are the most important ones: 1- Caine is the recommended platform (although still installs on a plain Ubuntu 8.04) 2- Manual prep of the root account by the user is no longer required. The script completely configures the root account. 3- The script decides which packages to install based on target system (Caine or Ubuntu) 4- Installation is done now with the sudo command
Be the first person to add a text review.
Copyright © 2009 Geeknet, Inc. All rights reserved. Terms of Use
Thanks for your rating!
Would you also like to write a review?