Virtual machine memory forensics

Alvin Huseinovic, Samir Ribić · 2013

Physical memory can contain various data such as user passwords, encryption keys, web browser activity and other traces interesting for forensic analysis. Virtual machine physical memory is usually presented as a file on a host operating system. In this paper, the obtaining and analyzing of the virtual machine memory dump are presented.

Read the paper · More papers on PaperTik