⤷ Title: Screaming at the Kernel: How GhostKatz Uses “Vulnerable Drivers” to Dump Credentials via Physical Memory
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:00:10 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Aggressor Script #BYOVD #Cobalt Strike #credential exfiltration #Erik Esquivel #GhostKatz #Julian Peña #kernel exploitation #LSASS dump #MmMapIoSpace #red team tools #Tech News 2026
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:00:10 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Aggressor Script #BYOVD #Cobalt Strike #credential exfiltration #Erik Esquivel #GhostKatz #Julian Peña #kernel exploitation #LSASS dump #MmMapIoSpace #red team tools #Tech News 2026
Information Security News
Screaming at the Kernel: How GhostKatz Uses “Vulnerable Drivers” to Dump Credentials via Physical Memory
Security researcher Julian Peña has unveiled GhostKatz, a formidable new utility engineered to exfiltrate credentials from the LSASS process by directly accessing a computer’s physical memor…