Live memory analysis using Rekall, (Tue, Dec 25th)

If you are doing memory forensics using Volatility, maybe you have noticed that one of the disadvantages that you can’t do a live analysis. If you need to do live memory forensics, then Rekall is your best friend.

Article Link: https://isc.sans.edu/diary/rss/24454