Dumping LSASS memory with MiniDumpWriteDump on PssCaptureSnapShot to evade WinDefender ATP credential-theft. Take a look at this blog post for details. ATPMiniDump was created starting from Outflank-Dumpert then big credits to @Cneelis
gavz / atpminidump Goto Github PK
View Code? Open in Web Editor NEWThis project forked from b4rtik/atpminidump
Evading WinDefender ATP credential-theft
License: BSD 3-Clause "New" or "Revised" License