LSASS secrets
LSASS Dump - Tools

Task Manager Method

Mimikatz
SafetyKatz
BetterSafetyKatz
SharpKatz
Dumpert (Direct Syscalls and API unhooking)
Rundll32.exe & Comsvcs.dll Method
Download - ExfiltrationSAM & LSA secretsExctract Credentials
Netexec - CME - Remotely
Procdump
TrickDump
MultiDump
Obfuscated LSASS Dump


RustiveDump
LsassReflectDumping
RtlCreateProcessReflection
ShadowDumper

MiniDumpDotNet
Nanodump
POSTDump
Powershell - Bypass Defender for Endpoint
Lsass-Shtinkering
Go-lsass
Blindsight
AxiomDumper
Bypass Credential Guard
LSASS Forked Dump - Bypass Crowdstrike EDR
Morpheus
Doppelganger - LSASS Dumper with Process Cloning
Resources
Interesting Book
Interesting BooksSupport this Gitbook
Last updated


