Moyix has done it again! Not only has he updated his
Volatility modules for retrieving Registry data from memory, but he's also developed a means to
run RegRipper against a memory image! This was also picked up on
SANS ISC. Very, VERY cool! Check it out and give it a try...
No comments:
Post a Comment