Helix是一份基于Ubuntu自启动运行光盘的定制发行,它带有极好的硬件检测,以及很多应急响应和计算机取证方面的专用工具。 Drew Fahey has announced the release of Helix 2008R1, an Ubuntu-based live CD with a collection of incident response and forensic analysis software: "Helix 2008R1 (2.0) has officially been released and is available for download. This is a major update to the bootable side of Helix, as it is based on Ubuntu rather than KNOPPIX. There are a number of other changes: Guidance Software Linen v6.11.2.2; AFFLIB 3.3.3 - open and extensible file format designed to store disk images and associated metadata; aimage 3.1.0 - advanced disk imaging tool; Autopsy 2.08 - GUI front-end to Sleuth Kit tools; Sleuth Kit 2.52 - open source digital investigation forensic tools; chkrootkit v0.47 - determine whether system is infected with a rootkit; chntpw 0.99.3 - utility to overwrite Windows SAM passwords...." Read the release announcement and changelog for more details. Download (MD5): Helix2008R1.iso (702MB). |