Information Technology
Hands on Training icon
Hands On Training
Hands on Training icon

Getting Started with Memory Forensics Using Volatility

Course Cover
compare button icon

Course Features

icon

Duration

81 minutes

icon

Delivery Method

Online

icon

Available on

Downloadable Courses

icon

Accessibility

Desktop, Laptop

icon

Language

English

icon

Subtitles

English

icon

Level

Intermediate

icon

Teaching Type

Self Paced

icon

Video Content

81 minutes

Course Description

Forensic examiners and incident responders must be able to perform memory forensics. In today's world of sophisticated malware and insider threats, it is possible to rely on only dead-box forensics or other security tools, without extracting the important information stored in volatile memory. This can lead to missing key artifacts that are necessary for forensic investigations. This course, "Getting Started with Memory Forensics using Volatility", will give you a solid understanding of the Volatility framework and how to perform memory forensics. You will first learn about Volatility, including how to download and configure it, as well as how to run it. Next, you'll learn how Volatility can be used to perform memory forensics using Windows, macOS and Linux memory images. You will then be able to experience a real-life security incident where we will use volatility to perform memory analysis on an image to determine what happened to the victim host. After completing this course, you will be able to use Volatility to perform memory forensics.

Course Overview

projects-img

International Faculty

projects-img

Post Course Interactions

projects-img

Hands-On Training,Instructor-Moderated Discussions

Skills You Will Gain

What You Will Learn

Finally, you will go through a real life scenario entailing of a security incident in which we will leverage volatility to perform memory forensics on an image in order to discover what occurred on the victim host

Next, you will explore how to utilize Volatility to perform memory forensics on Linux, macOS, and Windows memory images

When you're finished with this course, you will have the skills and knowledge needed to perform memory forensics using Volatility

You will learn the background information of Volatility including how to download, configure, and run it

Course Cover