Adversaries may attempt to access credential material stored in the process memory of the Local Security Authority Subsystem Service (LSASS).

Tactics
TA0006

Sub-technique of
T1003


See: MITRE ATT&CK