Главная
Study mode:
on
1
Intro
2
Meet Kyle
3
What is forensics
4
Sift Workstation
5
Acquiring Memory
6
Capture Memory
7
Volatility
8
Memory Profile
9
View Processes
10
Mail Signs
11
CATs
12
Example
13
Netscan
14
Councils
15
CREP
16
VirusTotal
17
Autorun
18
Browsing History
19
Commands
20
Other good artifacts
21
Admin Verse
22
Chrome Search Terms
23
Powershell
Description:
Explore memory forensics techniques and tools in this BSides Detroit 2017 conference talk. Dive into the world of digital investigation as Kyle demonstrates how to acquire and analyze computer memory using tools like Sift Workstation and Volatility. Learn to identify suspicious processes, detect malware, and uncover user activity through memory artifacts. Discover practical examples of user data theft and malware hunting techniques, including analyzing mail signs, network connections, and browser history. Gain insights into powerful forensic commands and other valuable artifacts that can aid in cybersecurity investigations and incident response.

Playing in Memory - Examples of User Thievery and Hunting for Malware

Add to list