Quantcast
Channel: BOT24
Viewing all articles
Browse latest Browse all 8064

Mimikatz Against Virtual Machine Memory Part 1

$
0
0
Pentesting is a funny thing. Someone will drop some new way of doing something and then you get to reflect on all those missed opportunities on previous engagements. I remember when MC showed me all the Oracle stuff and I reminisced about the missed shells.

This post and part 2 is like that for me. I can't count the number of times i've had access to the folder full of an organization's virtual machines. I knew you could download the raw disk (vmdk) and use tools like volatility on them to carve out useful pieces of the file system but not memory.

more here...........http://carnal0wnage.attackresearch.com/2014/05/mimikatz-against-virtual-machine-memory.html

Viewing all articles
Browse latest Browse all 8064

Trending Articles