Advanced Memory Forensics: Analysis Techniques

This article explores advanced memory forensics techniques for detecting malicious activity in memory, including process timelining, high-low level analysis, walking the VAD tree, and detecting rogue processes, kernel-level rootkits, DLL hijacking, process hollowing, and sophisticated persistence mechanisms.

May 2, 2023 · 37 min · UncleSp1d3r