google / rekallLinks
Rekall Memory Forensic Framework
☆1,957Updated 4 years ago
Alternatives and similar repositories for rekall
Users that are interested in rekall are comparing it to the libraries listed below
Sorting:
- LiME (formerly DMD) is a Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and Linux-based devices…☆1,826Updated 8 months ago
- Noriben - Portable, Simple, Malware Analysis Sandbox☆1,160Updated 2 months ago
- Binary analysis and management framework☆1,547Updated 2 years ago
- Super timeline all the things☆1,866Updated 2 weeks ago
- FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.☆3,559Updated last week
- Python scriptable Reverse Engineering Sandbox, a Virtual Machine instrumentation and inspection framework based on QEMU☆1,668Updated last year
- GRR Rapid Response: remote live forensics for incident response☆4,913Updated 2 weeks ago
- FakeNet-NG - Next Generation Dynamic Network Analysis Tool☆1,939Updated 2 months ago
- Indicators of Compromises (IOC) of our various investigations☆1,788Updated 2 weeks ago
- A static analyzer for PE executables.☆1,068Updated last year
- Malcom - Malware Communications Analyzer☆1,162Updated 7 years ago
- yarGen is a generator for YARA rules☆1,654Updated 2 months ago
- Builds malware analysis Windows VMs so that you don't have to.☆1,042Updated 3 years ago
- ☆969Updated 2 months ago
- The Python interface for YARA☆698Updated 3 weeks ago
- DRAKVUF Black-box Binary Analysis☆1,126Updated last week
- Platform for Architecture-Neutral Dynamic Analysis☆2,613Updated this week
- Digital Forensics artifact repository☆1,129Updated 5 months ago
- The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file s…☆2,815Updated 2 weeks ago
- CRITs - Collaborative Research Into Threats☆904Updated 5 years ago
- Loki - Simple IOC and YARA Scanner☆3,561Updated 6 months ago
- Python low-interaction honeyclient☆1,015Updated this week
- Sandboxed Execution Environment☆819Updated 4 years ago
- Laika BOSS: Object Scanning System☆748Updated 6 months ago
- Cuckoo Sandbox is an automated dynamic malware analysis system☆5,719Updated 3 years ago
- Modular file scanning/analysis framework☆619Updated 5 years ago
- An advanced memory forensics framework☆7,729Updated last month
- YARA signature and IOC database for my scanners and tools☆2,657Updated 3 weeks ago
- Malicious HTTP traffic explorer☆717Updated 2 years ago
- pefile is a Python module to read and work with PE (Portable Executable) files☆1,952Updated 9 months ago