Credential Dumping via Volatility Framework

Rule Info

Name
Credential Dumping via Volatility Framework
Author
Swachchhanda Shrawan Poudel (Nextron Systems)
Description
Detects potential credential dumping activities using the Volatility memory forensics framework
Date
2026-04-09 00:00:00
Modified
None
Id
2408b5eb-83f9-4c39-aba2-1abe47b423f3
Tags
attack.credential-access attack.t1003 attack.t1003.001
Type
Nextron Sigma feed only (private)

Rule History