
VMkatz
Extract Windows credentials directly from VM memory snapshots and virtual disks
digital-forensicsexploitationforensics+7
1.5k4 months ago

Extract Windows credentials directly from VM memory snapshots and virtual disks

Powershell Empire Persistence finder

An aggressor script that tracks operational changes made during a red team engagement. Gives you a full audit trail of what was changed and what…

Cross-platform interactive shell for Microsoft Defender for Endpoint Live Response