Hi guys today I will share another way to capture memory dump using open source tool WinPmem. As shared on my earlier posts, memory dump is a very useful volatile artefact that basically contains all important artifacts you could find during run time like processes and programs running on the system, network connections, evidence of malware intrusion, registry hives, usernames and passwords, decrypted files and keys, MFT and evidence of activity not typically stored on the local hard disk.
Hope you like this video and please do like, share and subscribe as support for me doing more of this stuff and it is my pleasure to contribute back to the community with these channels.
Come follow me on other channels. Thanks a bunch!
LinkedIn: / cyber-nerd-b61014229
Twitter: / cyberne73816353
Facebook: / cyber-security-free-resource-103047895585535
Tumblr: / cyber-security-free-resource
Youtube: / @cybersecurityfreeresource278
Wordpress:https://cybersecurityfreeresource.wor...
#memoryforensics #memorydump #winpmem #dfir #blueteamskills