<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Linux :: 标签 :: x7peeps</title><link>https://x7peeps.com/tags/Linux/index.html</link><description/><generator>Hugo</generator><language>zh-CN</language><lastBuildDate>Mon, 15 Jun 2026 11:00:00 +0800</lastBuildDate><atom:link href="https://x7peeps.com/tags/Linux/index.xml" rel="self" type="application/rss+xml"/><item><title>Linux日志时间线分析与SSH入侵溯源</title><link>https://x7peeps.com/%E5%AE%89%E5%85%A8/%E5%BA%94%E6%80%A5%E5%93%8D%E5%BA%94/0x03%E5%8F%96%E8%AF%81%E5%88%86%E6%9E%90/Linux%E6%97%A5%E5%BF%97%E6%97%B6%E9%97%B4%E7%BA%BF%E5%88%86%E6%9E%90%E4%B8%8ESSH%E5%85%A5%E4%BE%B5%E6%BA%AF%E6%BA%90/index.html</link><pubDate>Mon, 15 Jun 2026 10:00:00 +0800</pubDate><guid>https://x7peeps.com/%E5%AE%89%E5%85%A8/%E5%BA%94%E6%80%A5%E5%93%8D%E5%BA%94/0x03%E5%8F%96%E8%AF%81%E5%88%86%E6%9E%90/Linux%E6%97%A5%E5%BF%97%E6%97%B6%E9%97%B4%E7%BA%BF%E5%88%86%E6%9E%90%E4%B8%8ESSH%E5%85%A5%E4%BE%B5%E6%BA%AF%E6%BA%90/index.html</guid><description>围绕 auth.log、secure、wtmp、bash_history 与 Web 日志，构建 Linux 主机入侵后的时间线分析方法，定位爆破、成功登录、提权与横向移动痕迹。</description></item><item><title>自启动项、计划任务与服务持久化分析</title><link>https://x7peeps.com/%E5%AE%89%E5%85%A8/%E5%BA%94%E6%80%A5%E5%93%8D%E5%BA%94/0x03%E5%8F%96%E8%AF%81%E5%88%86%E6%9E%90/%E8%87%AA%E5%90%AF%E5%8A%A8%E9%A1%B9%E8%AE%A1%E5%88%92%E4%BB%BB%E5%8A%A1%E4%B8%8E%E6%9C%8D%E5%8A%A1%E6%8C%81%E4%B9%85%E5%8C%96%E5%88%86%E6%9E%90/index.html</link><pubDate>Mon, 15 Jun 2026 11:00:00 +0800</pubDate><guid>https://x7peeps.com/%E5%AE%89%E5%85%A8/%E5%BA%94%E6%80%A5%E5%93%8D%E5%BA%94/0x03%E5%8F%96%E8%AF%81%E5%88%86%E6%9E%90/%E8%87%AA%E5%90%AF%E5%8A%A8%E9%A1%B9%E8%AE%A1%E5%88%92%E4%BB%BB%E5%8A%A1%E4%B8%8E%E6%9C%8D%E5%8A%A1%E6%8C%81%E4%B9%85%E5%8C%96%E5%88%86%E6%9E%90/index.html</guid><description>从 Windows Run 键、计划任务、系统服务到 Linux systemd、cron、rc.local，系统梳理入侵后常见持久化方式及其取证分析思路。</description></item></channel></rss>