{"type":"rich","version":"1.0","provider_name":"Transistor","provider_url":"https://transistor.fm","author_name":"Antisyphon Training Anticasts","title":"Investigating Nix Endpoints for Incident Response - Patterson Cake","html":"<iframe width=\"100%\" height=\"180\" frameborder=\"no\" scrolling=\"no\" seamless src=\"https://share.transistor.fm/e/9bc2e004\"></iframe>","width":"100%","height":180,"duration":4319,"description":"How many endpoint Operating Systems are there?\n \nSPOILER alert – the answer is two!\n🛝 Webcast Slides - \nhttps://www.antisyphontraining.com/wp-content/uploads/2026/04/REI-Nix-042026.pdf\n \nJoin Patterson Cake, Director of Incident Response at Black Hills Infosec, as he guides through his “rapid endpoint investigations” workflow for the “other” (not Windows) Operating System…*Nix (Linux/Mac).\n \nWe’ll learn how to select, acquire, and analyze Linux and Mac investigative artifacts, using Velociraptor offline collector, CatScale, and UAC scripts.\n \nWindows gets a lot of attention and rightfully so!\n \nHowever, Linux and Mac are part of every enterprise ecosystem and represent a critical attack surface. You need a simple, effective, repeatable plan for investigating these endpoints.\nChapters\nCredits\nChat with your fellow attendees in the BHIS Discord server:\nhttps://discord.gg/bhis\nin the #🔴live-chat channel\n🔗 Register for FREE Infosec Webcasts, Anti-casts & Summits – \nhttps://poweredbybhis.com\n\nBrought to you by:Black Hills Information Security https://www.blackhillsinfosec.com\nAntisyphon Traininghttps://www.antisyphontraining.com/\nActive Countermeasureshttps://www.activecountermeasures.com\nWild West Hackin Festhttps://wildwesthackinfest.com","thumbnail_url":"https://img.transistorcdn.com/HDXnAmbV7tTWd3YmKfUnB-pmJJ9MLowmoA_tR95bY9Y/rs:fill:0:0:1/w:400/h:400/q:60/mb:500000/aHR0cHM6Ly9pbWct/dXBsb2FkLXByb2R1/Y3Rpb24udHJhbnNp/c3Rvci5mbS8xZDlh/OGUwM2FhMmM5ZTQ5/YTA0MDI3ZjI0NGM5/ZmNlMS5wbmc.webp","thumbnail_width":300,"thumbnail_height":300}