From the course: Cybersecurity Foundations: Computer Forensics
Unlock the full course today
Join today to access over 25,200 courses taught by industry experts.
Solution: Live acquisition with a memory dump file
From the course: Cybersecurity Foundations: Computer Forensics
Solution: Live acquisition with a memory dump file
(upbeat music) - [Instructor] Let's open Neo. Go to file, open, open file. Choose mamdump.mam. Click open. Let's do a search. Click on the find icon. Make sure string is chosen and type password. Click find. As you can see, you can find every occurrence of the word password in your entire memory dump file like this, and you can keep going.
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
-
-
-
-
(Locked)
Data acquisition approaches1m 44s
-
(Locked)
Static acquisition with open-source tools3m 39s
-
(Locked)
Static acquisition case study with dd2m 57s
-
(Locked)
Static acquisition case study with dcfldd1m 53s
-
(Locked)
Live acquisition case study with a commercial tool40s
-
(Locked)
Challenge: Live acquisition with a memory dump file29s
-
(Locked)
Solution: Live acquisition with a memory dump file47s
-
(Locked)
-
-