-
HI, the technique seems cool:)
However I failed the test in the virtual machine,the system version is Win10 1809 17763.1577, and I've set the DumpType in registry
![image](https://user-images.gith…
-
Partial reads is a very real thing when doing DMA. We should define what happens when one should be encountered. Currently, we don't do anything in partial physical reads on most backends, yet, on vir…
-
Windows Defender对行为检测查杀的非常严格,k Windows Defender的进程都会被杀进程,更别说抓密码了,老哥看看有什么办法可以绕过没
-
## Overview
During the `8.8.6` release, I noticed that the rule versions were descending for a couple rules. For this explanation we will focus on Potential Credential Access via DuplicateHandle in L…
-
```
Add the 'hashdump' option to to save a copy of the Windows registry hives
for SAM, SECURITY, and SYSTEM if possible, then call
[http://code.google.com/p/creddump/ creddump] to dump the LANMAN/NT…
-
Good day SRA!
I would like to share a feature request in Vectr, based on a recent idea that we've started using outside of vectr.
**Context:** Vectr is a great tool for priorization and vulgariz…
-
Hello
used the following command on Kali Linux 'pypykatz lsa minidump lsass.DMP' (collected with the Windows10 Taskmanager as Admin:)
but get the following error message:
Am I doing something w…
-
Today a user cannot point to a folder and ingest all datasets with the tool.
-
```
Add the 'hashdump' option to to save a copy of the Windows registry hives
for SAM, SECURITY, and SYSTEM if possible, then call
[http://code.google.com/p/creddump/ creddump] to dump the LANMAN/NT…
-
# Trending repositories for C#
1. [**dotnet / roslyn**](https://github.com/dotnet/roslyn)
__The Roslyn .NET compiler provides C# and Visual Basic languages with rich code analysis…