A Model Context Protocol (MCP) server that integrates Volatility 3 memory forensics framework with Claude
☆31Jul 7, 2025Updated 8 months ago
Alternatives and similar repositories for Volatility-MCP-Server
Users that are interested in Volatility-MCP-Server are comparing it to the libraries listed below
Sorting:
- This tool parses Windows EVTX logs to extract login and logout sessions from a security.evtx file. It uses a Tkinter GUI to let you selec…☆31Feb 22, 2025Updated last year
- A tool for fetching DFIR and other GitHub tools.☆25Aug 2, 2025Updated 7 months ago
- ☆11Aug 3, 2018Updated 7 years ago
- These FLARE-VM configuration files are designed to be help setup a purpose-built installation, remove unnecessary packages to help stream…☆16Apr 10, 2024Updated last year
- LILO based Pulse Secure appliance disk image decryptor☆13Mar 20, 2024Updated last year
- A series of python scripts to extract information from Dark Web Applications☆14Mar 26, 2025Updated 11 months ago
- Just Another broken Registry Parser (JARP)☆16May 23, 2024Updated last year
- Simple and efficient file shredding☆14Sep 23, 2019Updated 6 years ago
- Parser for Sdba memory pool tags☆21Jul 16, 2021Updated 4 years ago
- AppLocker Policy Generator☆26Aug 25, 2025Updated 6 months ago
- Regexplore is a Volatility plugin designed to mimic the functionality of the Registry Explorer plugins in EZsuite☆18Mar 31, 2023Updated 2 years ago
- Python web app for previewing data in a Chrome Profile Folder☆23Jul 1, 2024Updated last year
- Web app built to allow digital forensic professionals to search for the forensic tools that will parse artifacts from various apps.☆18Apr 30, 2025Updated 10 months ago
- Google Filestream Forensic Tool☆22Mar 10, 2022Updated 3 years ago
- A series of python scripts to extract information from SQLite Data Files☆21Nov 15, 2025Updated 3 months ago
- Cross platform GitHub Action to upload multiple assets to a release using Golang☆12Feb 6, 2026Updated last month
- Quick ESXi Log Parser☆29Oct 20, 2025Updated 4 months ago
- Manage Your Large Team of Consultants☆11Sep 18, 2025Updated 5 months ago
- ☆24Mar 12, 2025Updated 11 months ago
- ☆51Nov 25, 2025Updated 3 months ago
- An efficient tool for search files, directories, and alternate data streams directly from NTFS image files.☆28Feb 21, 2026Updated 2 weeks ago
- ☆23Jul 7, 2023Updated 2 years ago
- findLoop - find possible encryption/decryption or compression/decompression code☆28Mar 30, 2019Updated 6 years ago
- A tool to grab session cookies of any website from an android phone and by-pass 2FA.☆11May 8, 2020Updated 5 years ago
- A Windows Event Log MCP☆40Aug 25, 2025Updated 6 months ago
- Plugins for parsing CSV files in Timeline Explorer. This project allows for anyone to add more supported files (i,e. they get a Line #/ta…☆30May 5, 2025Updated 10 months ago
- This is the repository for indicators of compromise (IOCs) and other data for threat intelligence articles posted on the Palo Alto Networ…☆115Nov 17, 2025Updated 3 months ago
- A collaboration effort by the DFIR community to provide definitions (sometimes multiple) for common forensic terms!☆26Dec 1, 2022Updated 3 years ago
- Browser Reviewer is a portable forensic tool for analyzing user activity in Firefox and Chrome-based browsers. It extracts and displays b…☆55Oct 10, 2025Updated 4 months ago
- ☆35Aug 4, 2018Updated 7 years ago
- Windows 10 Live Information viewer☆38Jan 27, 2022Updated 4 years ago
- an open source python deobfuscator for pyobfuscate.com☆40Jul 28, 2024Updated last year
- Have you ever wanted to search a link or IP address on multiple OSINT pages at once?☆59Jul 7, 2025Updated 8 months ago
- Automation of some MAPT activities and interaction with the mobile Android device.☆22Sep 28, 2025Updated 5 months ago
- Windows 10 Exploit☆30Oct 29, 2018Updated 7 years ago
- Web Recon Tool 🔍 An efficient reconnaissance tool for security researchers, ethical hackers, and developers to gather vital information …☆25Feb 23, 2026Updated last week
- Windows Forensics Environment Builder☆180Dec 5, 2025Updated 3 months ago
- Penguin OS Forensic (or Flight) Recorder☆40Dec 25, 2024Updated last year
- Use "Full Disk Access" permissions to read the contents of TCC.db and display it in human-readable format☆40Jul 27, 2021Updated 4 years ago