Dumping LSASS memory with MiniDumpWriteDump on PssCaptureSnapShot to evade WinDefender ATP credential-theft. Take a look at this blog post for details. ATPMiniDump was created starting from Outflank-Dumpert then big credits to @Cneelis
-
Couldn't load subscription status.
- Fork 48
Evading WinDefender ATP credential-theft
License
Couldn't load subscription status.
b4rtik/ATPMiniDump
Folders and files
| Name | Name | Last commit message | Last commit date | |
|---|---|---|---|---|
Repository files navigation
About
Evading WinDefender ATP credential-theft
Resources
License
Stars
Watchers
Forks
Releases
No releases published
Packages 0
No packages published