SDF: Memory Forensics 2




SDF: Memory Forensics 2

Learn to script Volatility and conduct a malware compromise assessment.

This class provides you with hands on training working with a memory image in order to find evidence of compromise. Step-by-step the course teaches students how to automate memory forensic processing as well as how to interpret the findings. By the end of the course students will have an efficient forensic tool and methodology that may be used for any windows memory forensic exam.

This class teaches students how to conduct memory forensics using Volatility.

  • Learn how to use & combine plugin results to identify malware

  • Learn how to create a script to automate running plugins and post-processing data refinement

  • Learn how to run and interpret plugins

  • Hands-on practicals reinforce learning

  • Learn all of this in about one hour using all freely available tools.

Learn Windows memory forensics

Url: View Details

What you will learn
  • Learn how to use Volatility
  • Learn to do a fast-triage malware compromise assessment
  • Understand plugin output for investigations

Rating: 4.32143

Level: All Levels

Duration: 2.5 hours

Instructor: Michael Leclair


Courses By:   0-9  A  B  C  D  E  F  G  H  I  J  K  L  M  N  O  P  Q  R  S  T  U  V  W  X  Y  Z 

About US

The display of third-party trademarks and trade names on this site does not necessarily indicate any affiliation or endorsement of hugecourses.com.


© 2021 hugecourses.com. All rights reserved.
View Sitemap