Agent Skills: detecting-t1003-credential-dumping-with-edr
Detect OS credential dumping techniques targeting LSASS memory, SAM database, NTDS.dit, and cached credentials using EDR telemetry, Sysmon process access monitoring, and Windows security event correlation.
UncategorizedID: plurigrid/asi/detecting-t1003-credential-dumping-with-edr
165
Install this agent skill to your local
Skill Files
Browse the full folder contents for detecting-t1003-credential-dumping-with-edr.
Loading file tree…
Select a file to preview its contents.