Detecting Credential Dumping Techniques

Detect LSASS credential dumping, SAM database extraction, and NTDS.dit theft using Sysmon Event ID 10, Windows Security logs, and SIEM correlation rules

thedixitjain 794f34e 5 files · 27.1 KB Updated 2 repo stars

File contents

thedixitjain/the-mega-skill-library/tree/main/library/security-and-compliance/detecting-credential-dumping-techniques commit 794f34e475

Frequently asked questions

npx skillmds add thedixitjain/detecting-credential-dumping-techniques