Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Leaving No Stone Unturned

BasisTech via YouTube

Overview

Google, IBM & Meta Certificates — All 10,000+ Courses at 40% Off
One annual plan covers every course and certificate on Coursera. 40% off for a limited time.
Get Full Access
Explore advanced memory forensics techniques in this 31-minute conference talk from OSDFCon 2021. Discover how to effectively analyze volatile memory samples, uncover various attack methodologies, and learn practical investigation steps. Delve into topics such as dll loading, code injection, shell code injection, page permissions, and remote library injections. Follow along with a live demo showcasing memory analysis techniques, including the use of Virtual Address Descriptor Trees and Memory Modules. Gain insights from Jamie Levy, a senior researcher and developer with extensive experience in digital forensics, as she emphasizes the critical role of volatile memory in investigations and provides valuable tools for future analyses.

Syllabus

Introduction
About Jamie
Background
dll loading
Code injection
Shell code injection
Page permissions
Remote library injections
How to find remote library injections
Virtual Address Descriptor Tree
Reflective dll Loading
Memory Segments
Bad Tree
Memory
Demo
Memory Module
Memory Sample
How to Start
Timeline
Registry Key
Conclusion

Taught by

BasisTech

Reviews

Start your review of Leaving No Stone Unturned

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.