LiME (formerly DMD) is a Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and Linux-based devices, such as those powered by Android. The tool supports acquiring memory either to the file system of the device or over the network. LiME is unique in that it is the first tool that allows full memory captures f…
☆2,046Apr 5, 2026Updated 6 months ago
Alternatives and similar repositories for LiME
Users that are interested in LiME are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- AVML - Acquire Volatile Memory for Linux☆1,123Updated this week
- An advanced memory forensics framework☆8,055May 16, 2025Updated last year
- Rekall Memory Forensic Framework☆2,005Oct 18, 2020Updated 5 years ago
- Script for automating Linux memory capture and analysis☆275Feb 1, 2020Updated 6 years ago
- Differential Analysis of Malware in Memory☆214Apr 16, 2017Updated 9 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Volatility 3.0 development☆4,465Sep 17, 2026Updated 3 weeks ago
- A python application designed to remotely dump RAM of a Linux client and create a volatility profile for later analysis on your local hos…☆157Aug 26, 2020Updated 6 years ago
- Web App for Volatility framework☆388Jan 13, 2026Updated 8 months ago
- GRR Rapid Response: remote live forensics for incident response☆5,088Oct 1, 2026Updated last week
- Super timeline all the things☆2,168Updated this week
- Loki - Simple IOC and YARA Scanner☆3,796Jan 12, 2026Updated 8 months ago
- The multi-platform memory acquisition tool.☆1,057Oct 14, 2025Updated 11 months ago
- FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.☆4,178Updated this week
- A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering env…☆9,113Updated this week
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- PowerForensics provides an all in one platform for live disk forensic analysis☆1,444Nov 16, 2023Updated 2 years ago
- This is the development tree. Production downloads are at:☆1,432Updated this week
- Volatility profiles for Linux and Mac OS X☆329Oct 30, 2022Updated 3 years ago
- The pattern matching swiss knife☆9,929Sep 23, 2026Updated 2 weeks ago
- Noriben - Portable, Simple, Malware Analysis Sandbox☆1,303Sep 18, 2026Updated 3 weeks ago
- The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file s…☆3,160Updated this week
- FakeNet-NG - Next Generation Dynamic Network Analysis Tool☆2,205May 28, 2026Updated 4 months ago
- A Powershell incident response framework☆1,662Nov 22, 2022Updated 3 years ago
- Repository of yara rules☆4,912Apr 17, 2024Updated 2 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware a…☆3,427Feb 14, 2026Updated 7 months ago
- A curated list of tools for incident response☆9,442Jul 15, 2026Updated 2 months ago
- Digging Deeper....☆4,311Updated this week
- VolDiff: Malware Memory Footprint Analysis based on Volatility☆195Sep 12, 2017Updated 9 years ago
- Impacket is a collection of Python classes for working with network protocols.☆16,158Oct 1, 2026Updated last week
- UAC is a powerful and extensible incident response tool designed for forensic investigators, security analysts, and IT professionals. It …☆1,480Sep 9, 2026Updated last month
- Main Sigma Rule Repository☆11,190Updated this week
- Python scriptable Reverse Engineering Sandbox, a Virtual Machine instrumentation and inspection framework based on QEMU☆1,685Feb 14, 2024Updated 2 years ago
- Empire is a PowerShell and Python post-exploitation agent.☆7,851Jan 19, 2020Updated 6 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- CTF framework and exploit development library☆13,747Sep 3, 2026Updated last month
- Collaborative forensic timeline analysis☆3,431Updated this week
- PowerSploit - A PowerShell Post-Exploitation Framework☆13,073Aug 17, 2020Updated 6 years ago
- Autopsy® is a digital forensics platform and graphical interface to The Sleuth Kit® and other digital forensics tools. It can be used by …☆3,366Jun 20, 2026Updated 3 months ago
- Remote Memory Acquisition Tool☆253Sep 22, 2020Updated 6 years ago
- macOS (& ios) Artifact Parsing Tool☆1,089Updated this week
- Configuration files for the SOF-ELK VM☆1,759Sep 15, 2026Updated 3 weeks ago