Memory Forensics with Volatility: Complete Hands-on Guide
1. Introduction Memory forensics with Volatility has become the reference technique for reconstructing security incidents when the attacker has managed to conceal their tracks on disk. Volatile memory holds information that no filesystem preserves: running processes, active network connections, malware fragments loaded in RAM and, very often, cleartext credentials. This article is a complete hands-on guide in which we carry out a real lab of memory forensics with Volatility on an image from a compromised Windows 7 SP1 x64 machine, infected through a Metasploit payload. During the lab we profile the memory dump, identify an injected process, extract NTLM hashes …
Actions to be taken in case of hijacking or loss of GMAIL account credentials
1. Introduction The purpose of this article is to provide recommended steps to recover a GMAIL account that may have been lost or hijacked. Although the instructions have been checked, it should be noted that ultimately the recovery or not of the account depends on the criteria or criteria of the people at Gmail who evaluate the request and the evidence provided. This means that despite following each step correctly, it is possible that the recovery request will be rejected. 2. Steps for Gmail account recovery 2.1. Factors that can facilitate recovery As indicated in the introduction, the decision to …

