> Windows Syscalls
Back to ATT&CK index
T1003.001sub-technique

OS Credential Dumping: LSASS Memory

View on attack.mitre.org

8 syscalls implement this technique