Nov. 22, 2022, 2:53 p.m. | /u/CrazyKitty2016

Computer Forensics www.reddit.com

Curious what your experience is with finding evidence that someone booted from a live OS USB. Is there anything that could point to this being done?

I was thinking besides seeing the creation USB tools on the machine, you might notice if they turned off any USB protection/live boot security settings in the bios. But if they remembered to turn it back on, I'm not sure this would be detectable?

computerforensics live usb

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

IT Security Manager

@ Teltonika | Vilnius/Kaunas, VL, LT

Security Officer - Part Time - Harrah's Gulf Coast

@ Caesars Entertainment | Biloxi, MS, United States

DevSecOps Full-stack Developer

@ Peraton | Fort Gordon, GA, United States

Cybersecurity Cooperation Lead

@ Peraton | Stuttgart, AE, United States

Cybersecurity Engineer - Malware & Forensics

@ ManTech | 201DU - Customer Site,Herndon, VA