kevthehermit / VolUtility
Web App for Volatility framework
☆378Updated last week
Related projects: ⓘ
- Web interface for the Volatility Memory Forensics Framework☆259Updated 6 years ago
- VolatilityBot – An automated memory analyzer for malware samples and memory dumps☆263Updated 3 years ago
- Differential Analysis of Malware in Memory☆209Updated 7 years ago
- ☆505Updated 3 years ago
- 16,432 Free Yara rules created by☆378Updated 5 years ago
- Deception based detection techniques mapped to the MITRE’s ATT&CK framework☆280Updated 6 years ago
- ☆271Updated last year
- Automatic Yara Rule Generation☆328Updated 8 years ago
- VolDiff: Malware Memory Footprint Analysis based on Volatility☆192Updated 7 years ago
- The Cold Disk Quick Response (CDQR) tool is a fast and easy to use forensic artifact parsing tool that works on disk images, mounted driv…☆332Updated 2 years ago
- Query and report user logons relations from MS Windows Security Events☆240Updated 6 years ago
- A PowerShell script to interact with the MITRE ATT&CK Framework via its own API☆364Updated 5 years ago
- ☆415Updated last year
- ☆200Updated last year
- Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux☆489Updated last year
- FireEye Publicly Shared Indicators of Compromise (IOCs)☆462Updated 5 years ago
- ☆293Updated 4 years ago
- Artifact analysis tools by JPCERT/CC Analysis Center☆451Updated 2 months ago
- ☆237Updated this week
- A repository of tools and scripts related to malware analysis☆242Updated 8 years ago
- FAME Automates Malware Evaluation☆845Updated 2 weeks ago
- Volatility plugins developed and maintained by the community☆339Updated 3 years ago
- Python script to decode common encoded PowerShell scripts☆214Updated 6 years ago
- A tool to retrieve malware directly from the source for security researchers.☆562Updated 7 years ago
- Windows Live Artifacts Acquisition Script☆181Updated 2 years ago
- ☆375Updated this week
- EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.☆180Updated 4 years ago
- A modular Python application to collect intelligence for malicious hosts.☆260Updated 3 years ago
- Test Blue Team detections without running any attack.☆269Updated 4 months ago
- DPS' Lightweight Investigation Notebook☆421Updated 8 months ago