Skip to Main Content
Practical Memory Forensics
book

Practical Memory Forensics

by Svetlana Ostrovskaya, Oleg Skulkin
March 2022
Intermediate to advanced content levelIntermediate to advanced
304 pages
5h 58m
English
Packt Publishing
Content preview from Practical Memory Forensics

Chapter 3: Windows Memory Acquisition

You already know some theory, but as you may know, in essence, there's no difference between theory and practice, but in reality there is. So, let's move on and dive into some practical tasks, starting with Windows memory acquisition, as Windows is the most widely used operating system.

What does it mean? It's the most common target for threat actors! It also means that you will face it very often during your incident response engagements (and some criminal cases, of course). Therefore it's a very good idea to start from learning how to acquire memory from a Windows host.

This chapter will introduce you to the four most common tools used for Windows memory acquisition, and—of course—you'll learn how to ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

Practical Windows Forensics

Practical Windows Forensics

Ayman Shaaban, Konstantin Sapronov
Practical Mobile Forensics - Fourth Edition

Practical Mobile Forensics - Fourth Edition

Rohit Tamma, Oleg Skulkin, Heather Mahalik, Satish Bommisetty
Learn Computer Forensics

Learn Computer Forensics

William Oettinger

Publisher Resources

ISBN: 9781801070331