• [CTF] Realizing Windows Memory Forensics with Volatility and Gimp


    0x01 subject requirement The title provides a size of ___________ for256MBMemory mirroring, obviously we need to find something interesting from it. 0x02 analysis process Since it is memory forensics, the first thing to think of is a powerful forensics tool.——volatility The tool is integrated in Kali and is located inApplication – > Digital Forensics – […]