Skip to main content
Run any Skill in Manus
with one click
$pwd:

detecting-t1003-credential-dumping-with-edr

// Detect OS credential dumping techniques targeting LSASS memory, SAM database, NTDS.dit, and cached credentials using EDR telemetry, Sysmon process access monitoring, and Windows security event correlation.

$ git log --oneline --stat
stars:5,669
forks:776
updated:April 6, 2026 at 09:17
File Explorer
8 files
SKILL.md
readonly