<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Leave No Artifacts Behind &#8211; Linux Live CDs</title>
	<atom:link href="http://www.anti-forensics.com/leave-no-artifacts-behind-linux-live-cds/feed" rel="self" type="application/rss+xml" />
	<link>http://www.anti-forensics.com/leave-no-artifacts-behind-linux-live-cds</link>
	<description>Rendering computer investigations irrelevant</description>
	<lastBuildDate>Sat, 05 Nov 2011 19:36:26 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
	<item>
		<title>By: The Illuminati</title>
		<link>http://www.anti-forensics.com/leave-no-artifacts-behind-linux-live-cds/comment-page-1#comment-582</link>
		<dc:creator>The Illuminati</dc:creator>
		<pubDate>Tue, 14 Jun 2011 07:50:21 +0000</pubDate>
		<guid isPermaLink="false">http://www.anti-forensics.com/?p=128#comment-582</guid>
		<description>A forensic investigation is not limited to hard drives.</description>
		<content:encoded><![CDATA[<p>A forensic investigation is not limited to hard drives.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: xnplx</title>
		<link>http://www.anti-forensics.com/leave-no-artifacts-behind-linux-live-cds/comment-page-1#comment-445</link>
		<dc:creator>xnplx</dc:creator>
		<pubDate>Wed, 27 Apr 2011 03:38:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.anti-forensics.com/?p=128#comment-445</guid>
		<description>I&#039;ve been using this method for quite sometime now. But instead of those linux distros mentioned above, I use puppylinux. Also, instead of constantly booting from a live CD -- which is sometimes quite slow -- I did a manual &quot;frugal&quot; install of the OS in my harddisk. In such method, the OS boots faster than in a Live CD but maintains the same effect of booting from a Live CD: fresh OS every boot. After every session, Puppylinux will ask if you want to save the data that you generated during the session in your user space. I personally prefer not to save anything. But  If you really want to save your session, t gives you the option to encrypt your user space.</description>
		<content:encoded><![CDATA[<p>I&#8217;ve been using this method for quite sometime now. But instead of those linux distros mentioned above, I use puppylinux. Also, instead of constantly booting from a live CD &#8212; which is sometimes quite slow &#8212; I did a manual &#8220;frugal&#8221; install of the OS in my harddisk. In such method, the OS boots faster than in a Live CD but maintains the same effect of booting from a Live CD: fresh OS every boot. After every session, Puppylinux will ask if you want to save the data that you generated during the session in your user space. I personally prefer not to save anything. But  If you really want to save your session, t gives you the option to encrypt your user space.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Shaun</title>
		<link>http://www.anti-forensics.com/leave-no-artifacts-behind-linux-live-cds/comment-page-1#comment-377</link>
		<dc:creator>Shaun</dc:creator>
		<pubDate>Mon, 15 Nov 2010 00:02:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.anti-forensics.com/?p=128#comment-377</guid>
		<description>Any Secure Linux LiveCD that comes with with Vidalia? 
Also how would I be able to use some of my bookmarks in firefox/opera if i am booting up with a live cd? Do I have to download it as an html file from my email / a file share site each time and then load it up or could I access the bookmark file from a partition on my hard disk?</description>
		<content:encoded><![CDATA[<p>Any Secure Linux LiveCD that comes with with Vidalia?<br />
Also how would I be able to use some of my bookmarks in firefox/opera if i am booting up with a live cd? Do I have to download it as an html file from my email / a file share site each time and then load it up or could I access the bookmark file from a partition on my hard disk?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Olivia Graves</title>
		<link>http://www.anti-forensics.com/leave-no-artifacts-behind-linux-live-cds/comment-page-1#comment-283</link>
		<dc:creator>Olivia Graves</dc:creator>
		<pubDate>Fri, 20 Aug 2010 10:10:37 +0000</pubDate>
		<guid isPermaLink="false">http://www.anti-forensics.com/?p=128#comment-283</guid>
		<description>by the way, this &lt;a href=&#039;http://www.windowsbootcd.com&#039; rel=&quot;nofollow&quot;&gt; Windows boot CD&lt;/a&gt; is easy to use and works</description>
		<content:encoded><![CDATA[<p>by the way, this <a href='http://www.windowsbootcd.com' rel="nofollow"> Windows boot CD</a> is easy to use and works</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: DigitaLBBQ</title>
		<link>http://www.anti-forensics.com/leave-no-artifacts-behind-linux-live-cds/comment-page-1#comment-137</link>
		<dc:creator>DigitaLBBQ</dc:creator>
		<pubDate>Fri, 17 Jul 2009 08:00:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.anti-forensics.com/?p=128#comment-137</guid>
		<description>A MICROWAVE OVEN takes care of that THUMBDRIVE incase of loud bangs on the door.</description>
		<content:encoded><![CDATA[<p>A MICROWAVE OVEN takes care of that THUMBDRIVE incase of loud bangs on the door.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Magnus</title>
		<link>http://www.anti-forensics.com/leave-no-artifacts-behind-linux-live-cds/comment-page-1#comment-131</link>
		<dc:creator>Magnus</dc:creator>
		<pubDate>Sun, 21 Jun 2009 20:08:47 +0000</pubDate>
		<guid isPermaLink="false">http://www.anti-forensics.com/?p=128#comment-131</guid>
		<description>On windows, I know disabling the page file would cause problems, but how about limiting its size? Would that be any help?</description>
		<content:encoded><![CDATA[<p>On windows, I know disabling the page file would cause problems, but how about limiting its size? Would that be any help?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Conducting Your "Business" from Wireless Networks &#124; Anti-Forensics</title>
		<link>http://www.anti-forensics.com/leave-no-artifacts-behind-linux-live-cds/comment-page-1#comment-45</link>
		<dc:creator>Conducting Your "Business" from Wireless Networks &#124; Anti-Forensics</dc:creator>
		<pubDate>Tue, 24 Mar 2009 09:08:30 +0000</pubDate>
		<guid isPermaLink="false">http://www.anti-forensics.com/?p=128#comment-45</guid>
		<description>[...] Leave No Artifacts Behind [...]</description>
		<content:encoded><![CDATA[<p>[...] Leave No Artifacts Behind [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Yar</title>
		<link>http://www.anti-forensics.com/leave-no-artifacts-behind-linux-live-cds/comment-page-1#comment-33</link>
		<dc:creator>Yar</dc:creator>
		<pubDate>Tue, 17 Mar 2009 21:11:03 +0000</pubDate>
		<guid isPermaLink="false">http://www.anti-forensics.com/?p=128#comment-33</guid>
		<description>Yes, great idea. Definitely use some form of encryption or data hiding. It won&#039;t do you any good if you&#039;re raided in connection to something and they find copies of files from the illegally accessed system on your thumb drive.</description>
		<content:encoded><![CDATA[<p>Yes, great idea. Definitely use some form of encryption or data hiding. It won&#8217;t do you any good if you&#8217;re raided in connection to something and they find copies of files from the illegally accessed system on your thumb drive.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: John Doe</title>
		<link>http://www.anti-forensics.com/leave-no-artifacts-behind-linux-live-cds/comment-page-1#comment-30</link>
		<dc:creator>John Doe</dc:creator>
		<pubDate>Tue, 17 Mar 2009 20:35:23 +0000</pubDate>
		<guid isPermaLink="false">http://www.anti-forensics.com/?p=128#comment-30</guid>
		<description>Works like a charm :) It&#039;s also possible to pull this trick with a usb stick.

Instead of not mounting your drive, you could consider RO mounting. Then you can access documents or exploits for review/use and still leave no trace on the HD itself.

If you move data out of the cd/usb environment, not forget to encrypt it :)</description>
		<content:encoded><![CDATA[<p>Works like a charm <img src='http://www.anti-forensics.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  It&#8217;s also possible to pull this trick with a usb stick.</p>
<p>Instead of not mounting your drive, you could consider RO mounting. Then you can access documents or exploits for review/use and still leave no trace on the HD itself.</p>
<p>If you move data out of the cd/usb environment, not forget to encrypt it <img src='http://www.anti-forensics.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
</channel>
</rss>

