About this talk
This talk covers the importance of memory forensics in investigating advanced threats such as fileless malware and kernel-level rootkits. The speaker introduces a scalable framework that combines Volatility 3 with Retrieval-Augmented Generation, making memory analysis more efficient for both Linux and Windows systems while reducing inaccuracies associated with large language models. Attendees will learn how to leverage Volatility 3 to extract critical memory artifacts, enhance these artifacts with threat intelligence and behavioral context, and utilize a RAG-powered pipeline for improved threat detection and investigation efficiency.
More from this event
See all 28 talks →
Ai, Deception And Deepfakes When Trust Becomes The Primary Attack Surface
36:15
Cloud Resilience Simplified Less Data, Stronger Security
33:14
Demystifying Driver Research A Systematic Approach For Vulnerability Hunting
25:24
Dpdpa In Action Designing A 72 Hour Breach Response That Actually Works
22:56