2nd Edition: Hands-On Incident Response and Linux Forensics Workshop

from Tuesday, 10 February 2026 (08:25) to Wednesday, 11 February 2026 (17:00)
CERN (31/3-004)

        : Sessions
    /     : Talks
        : Breaks
10 Feb 2026
11 Feb 2026
AM
08:30 Welcome Session  
09:00 Introduction to incident response  
09:30 Attacker objectives  
10:00 --- Coffee Break ---
10:30 Essentials of data collection  
09:00 File System and Timeline Analysis  
09:40 Persistence Mechanisms  
10:00 --- Coffee Break ---
10:30 Live Incident Response Exercise  
PM
12:00 --- Lunch Break ---
13:30 Malware Introduction  
14:00 SIEM  
14:20 Command and Control  
14:45 --- Coffee Break ---
15:15 Malware Payloads  
16:00 Rootkits  
12:00 --- Lunch Break ---
13:30 Live Incident Response Exercise  
14:45 --- Coffee Break ---
15:15 Live Incident Debrief + Round Table  
16:30 Summary and Takeaways