Unix Forensics

The investigation of Unix-based systems (e.g., Linux, macOS), focusing on file systems, logs (e.g., /var/log), and shell history to uncover evidence.