[Day 11] Memory Forensics
December 11, 2022
Last updated
December 11, 2022
Last updated
Today's challenge was about volatile memory forensics. Using a tool called 'volatility3' I am able to view an image of active processes in RAM. This analysis is critical in digital forensics because the volatility in this type of memory can be lost if a computer is reset or turned off.
volatility3 - https://github.com/volatilityfoundation/volatility3
10
mysterygift.exe
2040
16