header bg

Scan QR code or get instant email to install app

Question:

Naomi aims to obtain the live memory (RAM) of a machine that is presently powered on. What is most appropriate for retrieving the contents of the system's memory?

A The Volatility framework.
explanation

The Volatility framework is a specialized tool designed for obtaining random access memory (RAM) from a running system. Autopsy is a forensic tool employed for the analysis of drives and forensic investigations. dd is utilized for creating images of drives, and netcat is a tool used to transfer data or establish connections to systems across a network.

Related Information

Comments

Leave a Reply

Your email address will not be published. Required fields are marked *

*