Many live demo of MemProcFs and PCILeech functionality by @UlfFrisk, including usage of Hyper-V memory access plugin!
P.S. User password in Linux Hyper-V guest VM was hacked too.
It was amazing!https://twitter.com/HECFBlog/status/1306998337791496193 …
-
-
hrm, I would hope not, or am I missing something? I was resetting passwords internal to linux guest-vm from hyper-v host via live memory/shadow file manipulation with help of LiveCloudKd.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
in windows hyper-v containers( windows sandbox ) it gets written to one of the eventlogs
-
wow, that's really messed up... was demoing on full vm in this case tho :)
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.