botherder / volatilityLinks
An advanced memory forensics framework
☆25Updated 10 years ago
Alternatives and similar repositories for volatility
Users that are interested in volatility are comparing it to the libraries listed below
Sorting:
- An example malicious payload controller and obfuscator assisted by TPM-protected keys☆39Updated 10 years ago
- A collection of tricky (and sometimes) funny shellcodes☆24Updated 14 years ago
- A graphical multiplatform tool to manipulate and forward TCP connections.☆12Updated 13 years ago
- ☆12Updated 8 years ago
- Library and tools to access the Windows Hibernation File (hiberfil.sys) format☆13Updated 11 months ago
- A tool for enumerating the effective privileges of processes on an Android device.☆53Updated 11 years ago
- SNMP Backdoor Communication Channel☆16Updated 13 years ago
- Scanner for Regin Virtual Filesystems☆26Updated 10 years ago
- A QEMU based framework for instrumenting x86 programs from Python☆17Updated 4 years ago
- ☆24Updated 9 years ago
- File Dissect is a cross-platform framework and UI for analyzing various file formats. It is based on wxWidgets since it provides a native…☆22Updated 9 months ago
- Various modules to implement the DetecTor design from http://detector.kuix.de☆52Updated 8 years ago
- XMLRPC server for password cracking☆33Updated 10 years ago
- Script for searching the extracted firmware file system for goodies!☆9Updated 9 years ago
- Some yara rules and tools☆16Updated 11 years ago
- ☆15Updated 8 years ago
- Redress Dissassembler is a cross platform binary disassembler written in Java with Capstone bindings☆24Updated 9 years ago
- Script to scan sites for images containing embedded EXIF metadata☆13Updated 12 years ago
- Collection of different ways to execute code outside of the expected entry points☆16Updated 11 years ago
- NSA - NoScript Anywhere (Firefox Mobile add-on)☆8Updated 9 years ago
- A Volatility plugin to extract credentials from the memory of a OpenVPN client.☆28Updated 10 years ago
- LD_PRELOAD rootkit utils☆16Updated 9 years ago
- Casper is a tiny system tray application that can be used to view the invisible windows on your desktop.☆12Updated 8 years ago
- This is a copy of the Registry Decoder Live repository from Google Code☆10Updated 9 years ago
- Tool support and visualizaton of Assembly Language within Eclipse, and integrated with IDA Pro. Can also be used as a standalone executab…☆14Updated 10 years ago
- Native Android software for dumping memory from Android processes☆14Updated 10 years ago
- please use https://github.com/fireeye/vivisect instead☆16Updated 10 months ago
- Public resources NB shares☆18Updated 9 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 8 years ago
- Discover potential timestamps within the Windows Registry☆19Updated 11 years ago