Detecting Credential Dumping Techniques

Detect LSASS credential dumping, SAM database extraction, and NTDS.dit theft using Sysmon Event ID 10, Windows Security logs, and SIEM correlation rules

henriquescastilho Updated

File contents

henriquescastilho/my-claude/tree/main/.claude/skills/detecting-credential-dumping-techniques commit a5e25678bc

Frequently asked questions

npx skillmds@latest add henriquescastilho/detecting-credential-dumping-techniques