Black Hills InfoSec - Offline Memory Forensics With Volatility

Volatility is a memory forensics tool that can pull SAM hashes from a vmem file. These hashes can be used to escalate from a local user or no user to a domain user leading to further compromise.
The post Offline Memory Forensics With Volatility appeared first on Black Hills Information Security, Inc..
from Black Hills Information Security, Inc. https://www.blackhillsinfosec.com/offline-memory-forensics-with-volatility/
Comments
Post a Comment