microsoft / avmlLinks
AVML - Acquire Volatile Memory for Linux
☆1,015Updated last week
Alternatives and similar repositories for avml
Users that are interested in avml are comparing it to the libraries listed below
Sorting:
- A Fast (and safe) parser for the Windows XML Event Log (EVTX) format☆830Updated last week
- Standard collection of rules for capa: the tool for enumerating the capabilities of programs☆649Updated last week
- The multi-platform memory acquisition tool.☆880Updated last month
- A rewrite of YARA in Rust.☆925Updated this week
- ReversingLabs YARA Rules☆872Updated 2 weeks ago
- RegRipper3.0☆658Updated 11 months ago
- DRAKVUF Sandbox - automated hypervisor-level malware analysis system☆1,231Updated this week
- Repository of YARA rules made by Trellix ATR Team☆618Updated 8 months ago
- Indicators of Compromises (IOC) of our various investigations☆1,880Updated this week
- Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts…☆1,047Updated last month
- yarGen is a generator for YARA rules☆1,741Updated last month
- Sysmon for Linux☆2,003Updated 4 months ago
- UAC is a powerful and extensible incident response tool designed for forensic investigators, security analysts, and IT professionals. It …☆1,181Updated last week
- Digital Forensics artifact repository☆1,178Updated last month
- RDP Bitmap Cache parser☆581Updated 10 months ago
- Super timeline all the things☆1,957Updated 3 weeks ago
- Distributed malware processing framework based on Python, Redis and S3.☆446Updated last month
- Real-time, container-based file scanning at enterprise scale☆958Updated last month
- Sophos-originated indicators-of-compromise from published reports☆635Updated 3 months ago
- Online hash checker for Virustotal and other services☆836Updated 8 months ago
- High Octane Triage Analysis☆789Updated this week
- A forensics tool to convert the data in the Windows srum (System Resource Usage Monitor) database to an xlsx spreadsheet.☆725Updated 5 months ago
- Malware repository component for samples & static configuration with REST API interface.☆370Updated 3 weeks ago
- Rapidly Search and Hunt through Windows Forensic Artefacts☆3,368Updated last month
- Forensics artefact collection tool for systems running Microsoft Windows☆425Updated 7 months ago
- LiME (formerly DMD) is a Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and Linux-based devices…☆1,894Updated 2 weeks ago
- AssemblyLine 4: File triage and malware analysis☆392Updated this week
- YARA signature and IOC database for my scanners and tools☆2,793Updated 2 weeks ago
- MBC content in markdown☆492Updated 5 months ago
- A set of Zeek scripts to detect ATT&CK techniques.☆617Updated last year