Volatility plugins created by the author
☆44Oct 2, 2015Updated 10 years ago
Alternatives and similar repositories for volatility_plugins
Users that are interested in volatility_plugins are comparing it to the libraries listed below
Sorting:
- threadmap plugin for Volatility Foundation☆27Aug 23, 2021Updated 4 years ago
- Parser for $LogFile on NTFS☆215Jun 1, 2025Updated 8 months ago
- Generate a histogram of TCP and UDP payload bytes from a pcap file☆24Aug 1, 2022Updated 3 years ago
- Parse IE, FireFox, Chrome and Safari Cookies for Google Analytic values☆23Sep 3, 2016Updated 9 years ago
- ☆12Dec 14, 2016Updated 9 years ago
- Python client for p0f3 API☆15Jan 25, 2021Updated 5 years ago
- A list of IOCs applicable to PoshC2☆24Aug 3, 2020Updated 5 years ago
- Synapse Rapid Power-up for SinkDB☆11Jun 24, 2025Updated 8 months ago
- a-ray-grass is a yara module that provides support for DCSO-format bloom filters in yara. In the context of hashlookup, it allows quickly…☆14Aug 19, 2022Updated 3 years ago
- Python IOC Editor☆65Mar 10, 2015Updated 10 years ago
- an ancient http botnet☆15Apr 4, 2015Updated 10 years ago
- ☆16Apr 16, 2017Updated 8 years ago
- A Powershell script for frequency analysis of separated values data files.☆17Jan 22, 2014Updated 12 years ago
- A simple SSL compatible IRC bot in pure python☆12Mar 20, 2015Updated 10 years ago
- Attempt to replicate the functions of auto_rip by Corey Harrell in Python.☆12Aug 4, 2024Updated last year
- Why hunt when you can seine?☆21May 12, 2015Updated 10 years ago
- Generate strong passwords using /dev/urandom 👻☆15Aug 7, 2017Updated 8 years ago
- Generate MAEC XML from Ero Carrera's pefile output☆15Mar 6, 2017Updated 8 years ago
- Exploit kit analyzer☆22Mar 3, 2015Updated 10 years ago
- Python libary to normalize Yara signatures☆19Oct 9, 2020Updated 5 years ago
- runsc loads 32/64 bit shellcode (depending on how runsc is compiled) in a way that makes it easy to load in a debugger. This code is base…☆38Dec 12, 2022Updated 3 years ago
- ☆16Jan 31, 2015Updated 11 years ago
- FireEye iSIGHT Alert Feeder for TheHive, an Open Source and Free Security Incident Response Platform☆16Oct 12, 2018Updated 7 years ago
- Simple python wrapper for the Robtex API (see https://www.robtex.com/api/).☆13Apr 17, 2021Updated 4 years ago
- VolDiff: Malware Memory Footprint Analysis based on Volatility☆197Sep 12, 2017Updated 8 years ago
- Trace ScriptBlock execution for powershell v2☆40Jan 14, 2020Updated 6 years ago
- A wireshark dissector for Mode-S aircraft transmissions☆14May 25, 2016Updated 9 years ago
- Anti-Honeypot Demo (obsolete)☆18Jul 24, 2017Updated 8 years ago
- Container for assorted volatility plugins.☆23Oct 22, 2013Updated 12 years ago
- A Powershell incident response framework☆1,640Nov 22, 2022Updated 3 years ago
- FRAC and RIFT☆17Mar 16, 2019Updated 6 years ago
- Using nDPI/openDPI to detect flow protocols from a PCAP file or live NIC. This program was modified from example in nDPI and I added a pe…☆23May 6, 2016Updated 9 years ago
- Parses MSDN documentation into an XML file☆31Jan 10, 2012Updated 14 years ago
- This is a hash parser that will export a rc file compatible with Metasploit. This is useful when compromising a separate domain and want …☆22Oct 8, 2014Updated 11 years ago
- Super timeline all the things☆2,017Feb 10, 2026Updated 2 weeks ago
- ☆22Dec 22, 2020Updated 5 years ago
- Example Suricata rules implementing some of my detection tactics☆22Jan 13, 2023Updated 3 years ago
- misc scripts☆35Oct 23, 2018Updated 7 years ago
- Script to parse Process Monitor XML log file, and give you a summary report.☆23May 4, 2016Updated 9 years ago