Crdntl Dumping Tchnqs

Detect LSASS credential dumping, SAM database extraction, and NTDS.dit theft using Sysmon Event ID 10, Windows Security logs, and SIEM correlation rules

undermybelt Updated

File contents

undermybelt/hermes-skills/tree/main/skills/red-teaming/anthropic-cybersecurity-skills/skills/crdntl-dumping-tchnqs commit d092f43625

Frequently asked questions

npx skillmds@latest add undermybelt/crdntl-dumping-tchnqs