Memory Forensics Cheat Sheet

This Memory Forensics Cheat Sheet supports the SANS Institute FOR508 Advanced Incident Response, Threat Hunting, and Digital Forensics Course. Few forensic techniques match the power and insight provided through memory analysis, but the tools available can prove challenging during first use.  This cheat sheet introduces an analysis framework and covers memory acquisition, live memory analysis, and the detailed usage of multiple popular memory forensic tools. An indispensable reference for both novice and experienced practitioners.

July 8, 2024
