Detecting Credential Dumping Techniques

Use when detect LSASS credential dumping, SAM database extraction, and NTDS.dit theft using Sysmon Event ID 10, Windows Security logs, and SIEM correlation rules. Use when detecting lsass credential dumping, sam database extraction, and ntds.dit theft.

oyi77 c189e2c 4.3 KB Updated 10 repo stars

File contents

oyi77/1ai-skills/tree/main/cybersecurity/detecting-credential-dumping-techniques commit c189e2cd06

Frequently asked questions

npx skillmds add oyi77/detecting-credential-dumping-techniques