Summary
内存取证与反内存取证方法论。从蓝队视角理解内存取证如何发现恶意行为(Volatility3 分析流程),从红队视角掌握如何规避内存检测(进程隐藏、内存加密、痕迹清除)。当需要分析内存 dump 或设计反取证策略时使用
wgpsec/aboutsecurity
内存取证与反内存取证方法论。从蓝队视角理解内存取证如何发现恶意行为(Volatility3 分析流程),从红队视角掌握如何规避内存检测(进程隐藏、内存加密、痕迹清除)。当需要分析内存 dump 或设计反取证策略时使用
npx skills add https://github.com/wgpsec/aboutsecurity
内存取证与反内存取证方法论。从蓝队视角理解内存取证如何发现恶意行为(Volatility3 分析流程),从红队视角掌握如何规避内存检测(进程隐藏、内存加密、痕迹清除)。当需要分析内存 dump 或设计反取证策略时使用
Related neighbors and high-traction skills in the same topics — useful to compare before installing.
Master memory forensics techniques including memory acquisition, process analysis, and artifact…
9.8K installsProvides digital forensics and signal analysis techniques for CTF challenges.
7.4K installs>- Memory forensics playbook using Volatility 2/3. Use when analyzing memory dumps for malware …
2.9K installsUse for authorized digital forensics including memory dumps, disk timelines, PCAP investigation…
13 installsParse Chromium-based browser databases with Hindsight to extract and correlate browsing history…
574 installsInvestigate compromised Docker containers by analyzing images, layers, volumes, logs, and runti…
553 installsOther skills from wgpsec/aboutsecurity · top by installs.
npx skills add https://github.com/wgpsec/aboutsecurity
Declared targets from SKILL.md / docs. Unmarked agents are not listed — the skill may still install via the CLI.
master