pinesol93 / MemoryForensicSamples
Links to various memory samples
☆28Updated 4 months ago
Alternatives and similar repositories for MemoryForensicSamples:
Users that are interested in MemoryForensicSamples are comparing it to the libraries listed below
- ☆65Updated 2 years ago
- ☆68Updated 4 months ago
- Understanding and analyzing carrier files workshop repo☆50Updated 5 years ago
- Some important DFIR Resources☆83Updated 2 years ago
- A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.☆154Updated 3 weeks ago
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆68Updated last year
- Jupyter Notebooks for the Blue Team☆145Updated last month
- Rules shared by the community from 100 Days of YARA 2024☆85Updated 3 months ago
- Xavier Framework is a user interface wrapper built on top of the Volatility(c) memory forensics framework.☆45Updated 2 years ago
- Hunt malware with Volatility☆47Updated 11 months ago
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hos…☆30Updated 3 years ago
- A hex viewer for the sleuths!☆19Updated 2 weeks ago
- A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.☆95Updated last year
- Project based on RegRipper, to extract add'l value/pivot points from TLN events file☆84Updated 2 months ago
- Malware Samples that could be used for teaching students about malware analysis.☆53Updated last year
- Forensics scripts aimed at automating & enhancing the Forensics Legend Eric Zimmerman's techniques, integrating the statistical detection…☆17Updated last year
- Detection Engineering with YARA☆87Updated last year
- Linux Baseline and Forensic Triage Tool - BETA☆55Updated 2 years ago
- Windows Forensics Environment Builder☆133Updated 3 months ago
- Harness the power of Splunk for your investigations☆99Updated 3 weeks ago
- A curated list of KAPE-related resources☆166Updated last month
- A specification and style guide for YARA rules☆48Updated last year
- macOS Artifacts☆29Updated last month
- Repository for sharing examples of our artifacts data and for use in new analyst recruitment.☆93Updated this week
- Malware Analysis Exercise Samples and Resources☆41Updated 5 months ago
- The official repo for a project involving a crowdsourced DFIR book. The main purpose of this book is to give anyone interested an opportu…☆207Updated 2 months ago
- Memory Baseliner is a script that can compare two windows memory images or perform frequency of occurrence / data stacking analysis on mu…☆52Updated last year
- USN Journal full path builder☆59Updated 7 months ago
- A repo that aims to centralize a current, running list of relevant parsers/tools for known DFIR artifacts☆60Updated 5 months ago
- The Volatility Collaborative GUI☆243Updated this week