An unhandled error has occurred.
Reload
X
UIZFORGE
Exams
Pricing
Career Paths
Resources
EN
Login
Sign Up
1
/ 5
Advanced
To capture volatile memory from a running cloud Linux instance for forensics, the responder should:
Take an EBS snapshot - that captures memory
Shut down and rely on swap files
Reboot the instance first
Run a memory acquisition tool (LiME / AVML) and stream to forensic storage
AI Tutor
Stuck? Get a hint