504ensicsLabs / LiME
LiME (formerly DMD) is a Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and Linux-based devices, such as those powered by Android. The tool supports acquiring memory either to the file system of the device or over the network. LiME is unique in that it is the first tool that allows full memory captures f…
☆1,794Updated 5 months ago
Alternatives and similar repositories for LiME:
Users that are interested in LiME are comparing it to the libraries listed below
- Rekall Memory Forensic Framework☆1,946Updated 4 years ago
- An advanced memory forensics framework☆7,589Updated last year
- FakeNet-NG - Next Generation Dynamic Network Analysis Tool☆1,876Updated 2 months ago
- The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file s…☆2,752Updated this week
- FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.☆3,462Updated 2 weeks ago
- Super timeline all the things☆1,803Updated 3 weeks ago
- AVML - Acquire Volatile Memory for Linux☆923Updated this week
- Repository of yara rules☆4,321Updated 11 months ago
- Binary analysis and management framework☆1,542Updated last year
- Python scriptable Reverse Engineering Sandbox, a Virtual Machine instrumentation and inspection framework based on QEMU☆1,662Updated last year
- Volatility 3.0 development☆2,958Updated this week
- The Python interface for YARA☆684Updated last week
- yarGen is a generator for YARA rules☆1,617Updated 9 months ago
- The pattern matching swiss knife☆8,632Updated 3 weeks ago
- Noriben - Portable, Simple, Malware Analysis Sandbox☆1,143Updated last year
- GRR Rapid Response: remote live forensics for incident response☆4,859Updated 3 weeks ago
- Autopsy® is a digital forensics platform and graphical interface to The Sleuth Kit® and other digital forensics tools. It can be used by …☆2,593Updated this week
- Platform for Architecture-Neutral Dynamic Analysis☆2,568Updated this week
- YARA signature and IOC database for my scanners and tools☆2,576Updated this week
- Loki - Simple IOC and YARA Scanner☆3,495Updated 4 months ago
- Python low-interaction honeyclient☆1,006Updated last week
- A static analyzer for PE executables.☆1,047Updated last year
- Reverse engineering framework in Python☆3,601Updated last month
- oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware a…☆3,010Updated 2 months ago
- ☆960Updated last month
- pefile is a Python module to read and work with PE (Portable Executable) files☆1,921Updated 6 months ago
- Fuzzy hashing API and fuzzy hashing tool☆708Updated 4 years ago
- Builds malware analysis Windows VMs so that you don't have to.☆1,039Updated 3 years ago
- Cuckoo Sandbox is an automated dynamic malware analysis system☆5,636Updated 2 years ago
- A toolset to make a system look as if it was the victim of an APT attack☆2,536Updated last year