home/categories/computational-chemistry/mukul975-anthropic-cybersecurity-skills-skills-detecting-t1003-credential-dumping-with-edr-skill-md
computational-chemistryresearch
detecting-t1003-credential-dumping-with-edr
Detect OS credential dumping techniques targeting LSASS memory, SAM database, NTDS.dit, and cached credentials using EDR telemetry, Sysmon process access monitoring, and Windows security event correlation.
maintainer
mukul975
Mis à jour 4/6/2026
Étoiles
4240
Forks
464
quick start
Installation and usage
Detect OS credential dumping techniques targeting LSASS memory, SAM database, NTDS.dit, and cached credentials using EDR telemetry, Sysmon process access monitoring, and Windows security event correlation.
Installation
$ install --globalskills.sh
Utilisation
Après l'installation, vous pouvez utiliser ce skill en exécutant la commande suivante dans votre terminal :
skills use detecting-t1003-credential-dumping-with-edr