Dumping LSASS Without Touching Disk: Improvements to ShadowDumper

While integrating LSASS dumping techniques into SpecterInsight’s dumper module, I used Offensive-Panda’s ShadowDumper as a reference point. That tool is great collection of LSASS dump techniques, but I also wanted to improve upon their research by addressing some of the issues that might result in detection by an EDR: The rest of this post walks […]

Dumping LSASS Without Touching Disk: Improvements to ShadowDumper Read More »