Tag: GhostKatz
-

Screaming at the Kernel: How GhostKatz Uses “Vulnerable Drivers” to Dump Credentials via Physical Memory
Security researcher Julian Peña has unveiled GhostKatz, a formidable new utility engineered to exfiltrate credentials from the LSASS process by directly accessing a computer’s physical memory. The project is hosted publicly on GitHub under the RainbowDynamix moniker, primarily serving the exigencies of information security professionals and Red Team operatives. GhostKatz weaponizes vulnerable, yet legitimately signed,…