Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Memory Forensics with Volatility - HackerSploit Blue Team Series

Linode via YouTube

Overview

Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
This course demonstrates how to use Volatility for Windows memory forensics in incident response and malware analysis. It covers installation, memory-dump analysis, process investigation, file extraction, hashing, and additional modules using a simulated compromise.

Syllabus

Introduction
What We Will Be Covering
Pre Requisites
Introduction to Volatility
Learning Resources
Practical Demo
What is Volatility?
Using MemLabs to Simulate a Crash/Compromise
Install Volatility
Transfer MemLabs Files to this System
Install and Extract the MemLabs File
Open the Dump in Volatility
Perform KDBG Scan
Extracting Information
Identify Hidden Processes
Investigate What a Process Was Doing
What Commands Were Being Executed?
Scan and Extract a File
Obtain Hashes with Volatility & CyberChef
Exploring Additional Modules
Conclusion

Taught by

Linode

Reviews

Start your review of Memory Forensics with Volatility - HackerSploit Blue Team Series

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.