A curated list of awesome Memory Forensics for DFIR
β560Feb 19, 2025Updated last year
Alternatives and similar repositories for awesome-memory-forensics
Users that are interested in awesome-memory-forensics are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A curated list of tools for incident response. With repository starsβ and forksπ΄β268Updated this week
- β491Aug 12, 2022Updated 4 years ago
- βοΈ A curated list of awesome forensic analysis tools and resourcesβ5,159May 14, 2026Updated 3 months ago
- Forensic cheatsheets for use with cheatβ15Dec 2, 2021Updated 4 years ago
- A curated list of awesome iOS application security resources.β669Jan 5, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer β’ AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIRβ728May 2, 2026Updated 3 months ago
- Awesome list of digital forensic toolsβ552Nov 16, 2020Updated 5 years ago
- Windows symbol tables for Volatility 3β99Jul 11, 2024Updated 2 years ago
- A curated list of KAPE-related resourcesβ191May 1, 2025Updated last year
- A curated knowledge base to build, run and mature a SOC (including CSIRT).β1,799Updated this week
- The goal of this repo is to archive artifacts from all versions of various OS's and categorizing them by type. This will help with artifaβ¦β662Jul 14, 2026Updated last month
- β760Aug 26, 2022Updated 3 years ago
- Digital Forensics Guide. Learn all about Digital Forensics, Computer Forensics, Mobile device Forensics, Network Forensics, and Database β¦β3,088Jan 4, 2024Updated 2 years ago
- Contains compiled binaries of Volatilityβ37May 18, 2025Updated last year
- Managed Database hosting by DigitalOcean β’ AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Collection of Event ID ressources useful for Digital Forensics and Incident Responseβ662Jun 19, 2024Updated 2 years ago
- Memory acquisition for Linux that makes sense.β248Nov 21, 2023Updated 2 years ago
- FileSigExtractor is a python based tool which extracts the file signatures of all files within a directory and writes the output to a CSVβ¦β10Jul 15, 2023Updated 3 years ago
- Handbook of windows forensic artifacts across multiple Windows version with interpretation tips and some examples. Work in progress!β494Aug 13, 2024Updated 2 years ago
- This tool aims at parsing Microsoft Protection logs to provide relevant data to forensic analysts during incident responses.β22Sep 30, 2022Updated 3 years ago
- Everything related to Linux Forensicsβ727Jul 13, 2023Updated 3 years ago
- Generate Volatility3 profiles from BTF.β35Dec 21, 2024Updated last year
- A toolkit for the post-mortem examination of Docker containers from forensic HDD copiesβ112Feb 18, 2024Updated 2 years ago
- Tools and packages that are used for countering forensic activities, including encryption, steganography, and anything that modify attribβ¦β1,031Nov 27, 2023Updated 2 years ago
- Managed Database hosting by DigitalOcean β’ AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Free hands-on digital forensics labs for students and facultyβ2,919Jul 28, 2026Updated 2 weeks ago
- Just Another broken Registry Parser (JARP)β16May 23, 2024Updated 2 years ago
- A hex viewer for the sleuths!β20Nov 7, 2025Updated 9 months ago
- C# based evtx parser with lots of extrasβ372Jun 17, 2026Updated 2 months ago
- Windows Forensics Environment Builderβ189Aug 1, 2026Updated 2 weeks ago
- A repo for centralizing ongoing research on the new Windows 10/11 DFIR artifact, EventTranscript.db.β43Jul 18, 2022Updated 4 years ago
- A curated list of resources for DFIR through Microsoft Defender for Endpoint leveraging kusto queries, powershell scripts, tools such as β¦β469Feb 18, 2026Updated 5 months ago
- A repository of output using KAPE (!EZParser Module) for various publicly available forensic images!β17Aug 31, 2024Updated last year
- A repository of DFIR-related Mind Maps geared towards the visual learners!β553Sep 2, 2022Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer β’ AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- β66Sep 18, 2025Updated 10 months ago
- β1,728Aug 19, 2022Updated 3 years ago
- A parser of Windows Defender's DetectionHistory forensic artifact, containing substantial info about quarantined files and executables.β119Jan 26, 2022Updated 4 years ago
- CLI tools for forensic investigation of Windows artifactsβ355Jul 21, 2025Updated last year
- KIISC Digital Forensics Challenge 2021 - DogeCoin's WriteUpβ17Dec 1, 2022Updated 3 years ago
- π‘οΈ Awesome Cloud Security Resources βοΈβ2,477Mar 17, 2026Updated 5 months ago
- Volatility 3.0 developmentβ4,332Updated this week