elceef / bitlockerLinks
Volatility Framework plugin for extracting BitLocker FVEK (Full Volume Encryption Key)
☆230Updated 9 years ago
Alternatives and similar repositories for bitlocker
Users that are interested in bitlocker are comparing it to the libraries listed below
Sorting:
- Comae Hibernation File Decompressor☆151Updated 2 years ago
- Web App for Volatility framework☆382Updated 7 months ago
- Autoruns plugin for the Volatility framework☆122Updated 5 years ago
- Differential Analysis of Malware in Memory☆212Updated 8 years ago
- VolatilityBot – An automated memory analyzer for malware samples and memory dumps☆267Updated 4 years ago
- The kernel patch and userspace tools to enable Linux software write blocking☆142Updated 5 years ago
- EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.☆195Updated 4 months ago
- A python application designed to remotely dump RAM of a Linux client and create a volatility profile for later analysis on your local hos…☆161Updated 4 years ago
- Script for automating Linux memory capture and analysis☆270Updated 5 years ago
- Windows Live Artifacts Acquisition Script☆188Updated 3 years ago
- Parse Windows Prefetch files: Supports XP - Windows 10 Prefetch files☆118Updated last year
- Page File analysis tools.☆127Updated 9 years ago
- ☆447Updated 7 months ago
- unXOR will search a XORed file and try to guess the key using known-plaintext attacks.☆143Updated 5 years ago
- Replay RDP traffic from PCAP☆194Updated 6 years ago
- Code written as part of our various malware investigations☆398Updated 6 months ago
- Volatility profiles for Linux and Mac OS X☆325Updated 2 years ago
- Volatility plugins developed and maintained by the community☆366Updated 4 years ago
- A modern Python-3-based alternative to RegRipper☆197Updated 3 months ago
- Automatically exported from code.google.com/p/creddump☆255Updated 6 years ago
- VolDiff: Malware Memory Footprint Analysis based on Volatility☆194Updated 7 years ago
- Python script to decode common encoded PowerShell scripts☆216Updated 7 years ago
- Parse evtx files and detect use of the DanderSpritz eventlogedit module☆148Updated 7 years ago
- DFF (Digital Forensics Framework) is a Forensics Framework coming with command line and graphical interfaces. DFF can be used to investig…☆286Updated 5 years ago
- inVtero.net: A high speed (Gbps) Forensics, Memory integrity & assurance. Includes offensive & defensive memory capabilities. Find/Extr…☆286Updated last year
- Digital Forensics Virtual File System (dfVFS)☆209Updated 6 months ago
- ☆277Updated 2 years ago
- Auto Installer Script for Cuckoo Sandbox☆164Updated 7 years ago
- Allows you to quickly query a Windows machine for RAM artifacts☆220Updated 4 years ago
- Python script for extracting USB information from Windows registry hives☆128Updated 5 years ago