> For the complete documentation index, see [llms.txt](https://fossoc.gitbook.io/documentation/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://fossoc.gitbook.io/documentation/case-studies/mimikatz.md).

# Mimikatz

Mimikatz is a tool that is commonly used by hackers and security professionals to extract sensitive information, such as passwords and credentials, from a system’s memory.

We will be creating the following:

* [Wazuh rule](/documentation/case-studies/mimikatz/wazuh-rule.md)
* [Shuffle workflow](/documentation/case-studies/mimikatz/shuffle-workflow.md)
