elceef / bitlockerLinks
Volatility Framework plugin for extracting BitLocker FVEK (Full Volume Encryption Key)
☆237Updated 9 years ago
Alternatives and similar repositories for bitlocker
Users that are interested in bitlocker are comparing it to the libraries listed below
Sorting:
- Comae Hibernation File Decompressor☆155Updated 2 years ago
- Web App for Volatility framework☆388Updated 3 months ago
- Differential Analysis of Malware in Memory☆213Updated 8 years ago
- VolatilityBot – An automated memory analyzer for malware samples and memory dumps☆270Updated 4 years ago
- Autoruns plugin for the Volatility framework☆122Updated 6 years ago
- Volatility profiles for Linux and Mac OS X☆325Updated 3 years ago
- Replay RDP traffic from PCAP☆199Updated 6 years ago
- Volatility plugins developed and maintained by the community☆369Updated 4 years ago
- Code written as part of our various malware investigations☆404Updated 9 months ago
- unXOR will search a XORed file and try to guess the key using known-plaintext attacks.☆144Updated 5 years ago
- Automatically exported from code.google.com/p/creddump☆265Updated 6 years ago
- inVtero.net: A high speed (Gbps) Forensics, Memory integrity & assurance. Includes offensive & defensive memory capabilities. Find/Extr…☆288Updated 2 years ago
- Page File analysis tools.☆128Updated 9 years ago
- Parse Windows Prefetch files: Supports XP - Windows 10 Prefetch files☆120Updated last year
- VolDiff: Malware Memory Footprint Analysis based on Volatility☆194Updated 8 years ago
- Script for automating Linux memory capture and analysis☆272Updated 5 years ago
- Various snippets created during malware analysis☆459Updated 3 weeks ago
- Cross-platform, open-source shellbag parser☆156Updated 2 years ago
- A modern Python-3-based alternative to RegRipper☆198Updated 7 months ago
- Automated Virtual Machine Generation and Cloaking for Cuckoo Sandbox.☆509Updated last year
- DFF (Digital Forensics Framework) is a Forensics Framework coming with command line and graphical interfaces. DFF can be used to investig…☆295Updated 5 years ago
- The kernel patch and userspace tools to enable Linux software write blocking☆148Updated 5 years ago
- Parse evtx files and detect use of the DanderSpritz eventlogedit module☆148Updated 7 years ago
- A python application designed to remotely dump RAM of a Linux client and create a volatility profile for later analysis on your local hos…☆161Updated 5 years ago
- CANAPE Network Testing Tool☆184Updated 7 years ago
- Collaborative malware analysis framework☆377Updated 6 years ago
- Database of private SSL/SSH keys for embedded devices☆267Updated last year
- Web interface for the Volatility Memory Forensics Framework☆259Updated 7 years ago
- Tool to help analyze PDF files☆186Updated 11 years ago
- Python script to decode common encoded PowerShell scripts☆217Updated 7 years ago