DEV Community

Qimin Zhao profile picture

Qimin Zhao

404 bio not found

Joined Joined on  github website
Turning first-pass host evidence into a DFIR handoff report

Turning first-pass host evidence into a DFIR handoff report

Comments
4 min read
How to triage Java memory-shell clues without unsafe default heap dumps

How to triage Java memory-shell clues without unsafe default heap dumps

Comments
3 min read
How to investigate suspicious SSH logins without giving AI a shell

How to investigate suspicious SSH logins without giving AI a shell

Comments
4 min read
How to triage a suspected WebShell without giving AI a shell

How to triage a suspected WebShell without giving AI a shell

Comments
3 min read
What safety boundary should an AI incident investigation tool have?

What safety boundary should an AI incident investigation tool have?

Comments
3 min read
How to investigate a suspicious IP on a Linux server with read-only evidence

How to investigate a suspicious IP on a Linux server with read-only evidence

Comments
3 min read
How I would use local read-only AI for first-pass server incident response

How I would use local read-only AI for first-pass server incident response

Comments
2 min read
loading...