Automating Forensic Analysis for Linux Endpoints
ID: 84b79697-eda0-5989-9415-b9d5b42d6df9
STIX ID: report--84b79697-eda0-5989-9415-b9d5b42d6df9
Feed Name: Intezer Blog
Intezer announces a Linux endpoint memory forensics scanner integrated into its Autonomous SOC platform, expanding its automated triage and investigation capabilities beyond Windows. The tool, built in Rust, supports live process memory scanning, injected module detection, recovery of deleted-but-running executables, and proxy/container environments, and can be triggered automatically during alert investigations via XDR or run on-demand; availability includes documentation, downloads, and demo options.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
