Volatility plugins created by the author
☆44Oct 2, 2015Updated 10 years ago
Alternatives and similar repositories for volatility_plugins
Users that are interested in volatility_plugins are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- threadmap plugin for Volatility Foundation☆27Aug 23, 2021Updated 4 years ago
- An advanced parser for INDX records☆30Aug 7, 2019Updated 6 years ago
- ☆12Dec 14, 2016Updated 9 years ago
- Parser for $LogFile on NTFS☆217Jun 1, 2025Updated 11 months ago
- Parse IE, FireFox, Chrome and Safari Cookies for Google Analytic values☆23Sep 3, 2016Updated 9 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- misc scripts☆35Oct 23, 2018Updated 7 years ago
- A Powershell script for frequency analysis of separated values data files.☆17Jan 22, 2014Updated 12 years ago
- VolDiff: Malware Memory Footprint Analysis based on Volatility☆197Sep 12, 2017Updated 8 years ago
- Generate a histogram of TCP and UDP payload bytes from a pcap file☆25Aug 1, 2022Updated 3 years ago
- ☆84Jul 5, 2016Updated 9 years ago
- a-ray-grass is a yara module that provides support for DCSO-format bloom filters in yara. In the context of hashlookup, it allows quickly…☆14Aug 19, 2022Updated 3 years ago
- Synapse Rapid Power-up for SinkDB☆11Jun 24, 2025Updated 10 months ago
- Trace ScriptBlock execution for powershell v2☆40Jan 14, 2020Updated 6 years ago
- ☆16Jan 31, 2015Updated 11 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Python IOC Editor☆66Mar 10, 2015Updated 11 years ago
- "Evolving AppCompat/AmCache data analysis beyond grep"☆211Sep 15, 2021Updated 4 years ago
- This is a hash parser that will export a rc file compatible with Metasploit. This is useful when compromising a separate domain and want …☆24Oct 8, 2014Updated 11 years ago
- Super timeline all the things☆2,071Updated this week
- A Powershell incident response framework☆1,653Nov 22, 2022Updated 3 years ago
- A tool to support the reporting of Authenticode Certificates by reducing the effort on individuals to report.☆40Mar 25, 2026Updated last month
- CrowdStrike Threat Intelligence☆35Jan 14, 2023Updated 3 years ago
- Yara rules☆21Mar 27, 2023Updated 3 years ago
- runsc loads 32/64 bit shellcode (depending on how runsc is compiled) in a way that makes it easy to load in a debugger. This code is base…☆38Dec 12, 2022Updated 3 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- FireEye iSIGHT Alert Feeder for TheHive, an Open Source and Free Security Incident Response Platform☆16Oct 12, 2018Updated 7 years ago
- ☆433May 3, 2023Updated 3 years ago
- Active Directory forensic framework☆336Mar 24, 2022Updated 4 years ago
- Security Onion Splunk App☆10May 18, 2015Updated 11 years ago
- Why hunt when you can seine?☆21May 12, 2015Updated 11 years ago
- AppCompatCache (shimcache) parser. Supports Windows 7 (x86 and x64), Windows 8.x, and Windows 10, and Windows 11☆128May 3, 2026Updated 2 weeks ago
- Differential Analysis of Malware in Memory☆216Apr 16, 2017Updated 9 years ago
- Library and tools to access the Volume Shadow Snapshot (VSS) format☆116Updated this week
- RDP Bitmap Cache parser☆658Apr 27, 2026Updated 3 weeks ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- IOC-EDT is an open source web based tool for creating indicators of compromise in the OpenIOC (http://www.openioc.org) format.☆18May 10, 2014Updated 12 years ago
- Parses $MFT from NTFS file systems☆315May 10, 2026Updated last week
- Container for assorted volatility plugins.☆23Oct 22, 2013Updated 12 years ago
- A repository to share publicly available Velociraptor detection content☆203May 10, 2026Updated last week
- Pure Python parser for Application Compatibility Shim Databases (.sdb files)☆109Jan 26, 2021Updated 5 years ago
- Script to parse Process Monitor XML log file, and give you a summary report.☆24May 4, 2016Updated 10 years ago
- Carve NTFS USN records from binary data☆27May 21, 2017Updated 8 years ago