k1nd0ne / VolWeb
A centralized and enhanced memory analysis platform
☆431Updated 2 weeks ago
Alternatives and similar repositories for VolWeb:
Users that are interested in VolWeb are comparing it to the libraries listed below
- MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR☆585Updated this week
- CLI tools for forensic investigation of Windows artifacts☆325Updated 3 months ago
- Handbook of windows forensic artifacts across multiple Windows version with interpretation tips and some examples. Work in progress!☆320Updated 6 months ago
- Ransomware simulator written in Golang☆424Updated 2 years ago
- Automatically created C2 Feeds☆584Updated this week
- Incident Response collection and processing scripts with automated reporting scripts☆284Updated 7 months ago
- A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs☆700Updated 2 weeks ago
- A ProcessMonitor visualization application written in rust.☆178Updated last year
- Awesome list of keywords and artifacts for Threat Hunting sessions☆522Updated this week
- An open-source self-hosted purple team management web application.☆255Updated last month
- Segugio allows the execution and tracking of critical steps in the malware detonation process, from clicking on the first stage to extrac…☆146Updated 5 months ago
- 🏴☠️💰 Another Ransomware gang tracker☆177Updated this week
- Live Feed of C2 servers, tools, and botnets☆579Updated this week
- Rapidly Search and Hunt through Linux Forensics Artifacts☆189Updated last year
- A collection of files with indicators supporting social media posts from Palo Alto Network's Unit 42 team to disseminate timely threat in…☆237Updated this week
- ☆514Updated 4 months ago
- sandbox approach for malware developers and red teamers to test payloads against detection mechanisms before deployment☆545Updated this week
- An offensive data enrichment pipeline☆659Updated 2 weeks ago
- a tool to help operate in EDRs' blind spots☆705Updated 2 months ago
- This repository is a compilation of all APT simulations that target many vital sectors,both private and governmental. The simulation inc…☆485Updated last week
- Map tracking ransomware, by OCD World Watch team☆425Updated 5 months ago
- ☆196Updated last year
- A tool matrix for Russian APTs based on the Ransomware Tool Matrix☆196Updated 3 months ago
- Simulate the behavior of AV/EDR for malware development training.☆461Updated last year
- Forensics Wiki, a wiki devoted to information about digital forensics (also known as computer forensics)☆262Updated 9 months ago
- Advanced Bash script designed for conducting digital forensics on Linux systems☆138Updated 10 months ago
- C2 infrastructure that allows Red Teamers to execute system commands on compromised hosts through Microsoft Teams.☆364Updated last month
- An Archive of Ransomware Notes Past and Present Collected by Zscaler ThreatLabz☆336Updated this week
- Collection of Linux and macOS Volatility3 Intermediate Symbol Files (ISF), suitable for memory analysis 🔍☆95Updated last week
- DFIR LABS - A compilation of challenges that aims to provide practice in simple to advanced concepts in the following topics: Digital For…☆174Updated 3 weeks ago