halpomeranz / lmgLinks
Script for automating Linux memory capture and analysis
☆274Updated 5 years ago
Alternatives and similar repositories for lmg
Users that are interested in lmg are comparing it to the libraries listed below
Sorting:
- Web App for Volatility framework☆388Updated 2 weeks ago
- VolDiff: Malware Memory Footprint Analysis based on Volatility☆197Updated 8 years ago
- VolatilityBot – An automated memory analyzer for malware samples and memory dumps☆270Updated 4 years ago
- Web interface for the Volatility Memory Forensics Framework☆260Updated 8 years ago
- The Cold Disk Quick Response (CDQR) tool is a fast and easy to use forensic artifact parsing tool that works on disk images, mounted driv…☆344Updated 3 years ago
- ☆280Updated 2 years ago
- Digital Forensics Virtual File System (dfVFS)☆216Updated last month
- Protocol Analysis/Decoder Framework☆496Updated 3 years ago
- ☆206Updated 2 years ago
- Differential Analysis of Malware in Memory☆215Updated 8 years ago
- Windows Live Artifacts Acquisition Script☆190Updated 3 years ago
- ☆194Updated last year
- Salt States for Configuring the SIFT Workstation☆106Updated last week
- Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux☆504Updated 3 years ago
- File Scanning Framework☆295Updated 4 years ago
- IRMA is an asynchronous & customizable analysis system for suspicious files.☆276Updated 2 years ago
- EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.☆206Updated 10 months ago
- Automatic Yara Rule Generation☆333Updated 9 years ago
- Autoruns plugin for the Volatility framework☆122Updated 6 years ago
- Volatility profiles for Linux and Mac OS X☆328Updated 3 years ago
- User guide of MISP☆282Updated last year
- ☆176Updated 5 years ago
- A python application designed to remotely dump RAM of a Linux client and create a volatility profile for later analysis on your local hos…☆159Updated 5 years ago
- Yara Rule Analyzer and Statistics☆395Updated 2 years ago
- Deception based detection techniques mapped to the MITRE’s ATT&CK framework☆291Updated 8 years ago
- ☆518Updated 5 years ago
- Page File analysis tools.☆130Updated 10 years ago
- SIFT Bootstrap Script☆145Updated 8 years ago
- FireEye Publicly Shared Indicators of Compromise (IOCs)☆472Updated 7 years ago
- CrowdStrike Feed Management System. CrowdFMS is a framework for automating collection and processing of samples from VirusTotal, by lever…☆131Updated 7 years ago