A precious presentation by Pär Österberg Medina about dumping and analyzing a memory dump for detecting rootkits, discovered in the twitter feed of Binni Shah:
Detecting Rootkits in Memory Dumps : https://t.co/lErFqZ0MPd (Slides)— Binni Shah (@binitamshah) May 15, 2016
- What is a rootkit?
- Dumping the memory
- How-to analyze a memory dump?
- Different rootkit techniques and how we detect it