2004 ֹ м ʷ ǥ , ϸ (Memory Forensics) ϸ ް ִ. ο μ , Ʈũ , , ȣȭ Ű ־ ̷ ͵ мν ̹ ˰ ýۿ ü ̷ Ȯ ְ ȴ. ̷ м ؼ ü ٸ ǰ ִ Ŀ ø̼ǿ ü м Ǿ߸ Ѵ. м θ ̴ ¼ҽ Volatility ũμƮ ü(Winxods XP ~ Windows 10) شϴ Ѵ.
ŸԵ ü ƴϴ. ý ϴ ͵ 쿡 ٷӴ. Դٰ ǰ Ŀ ϰ, ε ݾ ̰ ִ. ȯ濡 ȯ濡 ƴٰ ִ. Ŀ ȳϰ, ¼ҽ LiME ٷ. The Honeynet Project Forensic Challenge 2011 Ǿ ýۿ ƿƼ Ȱ Ǯ̸ Ѵ.
1 8
2 ȯ汸 12
2.1 Ubuntu 16.04 14
2.2 ƿƼ ġ 17
2.3 20
2.3.1 ġ Ȯ 20
2.3.2 ٿε 23
2.3.3 ϱ 26
3 33
3.1 LiME 35
3.2 lmg(Linux Memory Grabber) ڵȭ 41
3.2.1 lmg USB غ 42
3.2.2 lmg ġ 45
3.2.3 LiME ġ 46
3.2.4 Dwarfdump ġ 47
3.2.5 ƿƼ ġ 49
3.2.6 lmg ũƮ 51
3.2.7 Capture м 54
4 м 58
4.1 ƿƼ ÷ 59
4.2 ÷ ۵ 62
4.3 ÷ 67
5 Honeynet Challenge Ǯ 69
5.1 ó 71
5.2 м 74
5.2.1 Ͻý ü Ȯ 74
5.2.2 ƿƼ 78
5.2.3 ý 81
5.2.4 μ 83
5.2.5 Ʈũ 87
5.2.6 м 90
5.3 ϴå 102