Memlabs

Pre-requisites

Some basic pointers that are common for all the labs

  • I'll be using Volatility 2arrow-up-right for the labs. You can try with Volatility 3arrow-up-right too.

  • Always start with what you know and investigate from there. If you randomly run plugins, everything will look suspicious.

  • Create a separate folder for each lab and download the lab files into them. Also, create a output directory inside each lab directory to output the dump files.

Last updated