sk4la / volatility3-docker
Volatility, on Docker π³
β34Updated last month
Alternatives and similar repositories for volatility3-docker
Users that are interested in volatility3-docker are comparing it to the libraries listed below
Sorting:
- Windows symbol tables for Volatility 3β85Updated 10 months ago
- Signature-based detection of malware features based on Windows API call sequences. It's like YARA for sandbox API traces!β82Updated last year
- Volatility Symbol Generator for Linux Kernelsβ34Updated last year
- Volatility 3 Pluginsβ19Updated 2 years ago
- A zero dependency and customizable Python library for scanning Windows and Linux process memory.β66Updated last year
- Yara Rules for Modern Malwareβ77Updated last year
- Malware Analysis toolsβ26Updated 7 months ago
- Reads and prints information from the website MalAPI.ioβ19Updated 2 years ago
- Powershell Linterβ50Updated last week
- 100 Days of YARA to be updated with rules & ideas as the year progressesβ60Updated 2 years ago
- A collection of tools and detections for the Sliver C2 Frameworjβ125Updated 2 years ago
- Memory mapping profiles for forensic analysis using volatility 3β26Updated 3 years ago
- Linpmem is a linux memory acquisition toolβ82Updated last year
- Collection of Volatility2 profiles, generated against Linux kernels.β38Updated 2 weeks ago
- Lazarus analysis tools and research reportβ56Updated last year
- A collection of Tools and Rules for decoding Brute Ratel C4 badgersβ62Updated 2 years ago
- Use YARA rules on Time Travel Debugging tracesβ90Updated last year
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hosβ¦β31Updated 3 years ago
- Volatility3 plugins developed and maintained by the communityβ53Updated 2 years ago
- Volatility plugin to retrieve the Full Volume Encryption Key in memory. The FVEK can then be used with the help of Dislocker to mount theβ¦β47Updated 5 years ago
- Python library for dissecting and parsing Cobalt Strike related data such as Beacon payloads and Malleable C2 Profilesβ165Updated last month
- LILO based Pulse Secure appliance disk image decryptorβ13Updated last year
- This repository contains a variety of plugins and scripts, related to the Volatility framework.β12Updated 3 months ago
- Yapscan is a YAra based Process SCANner, aimed at giving more control about what to scan and giving detailed reports on matches.β61Updated last year
- β55Updated 7 months ago
- A small util to brute-force prefetch hashesβ77Updated 2 years ago
- β36Updated 2 months ago
- shared samples from #dailyphish and/or #apt tweetsβ39Updated 2 weeks ago
- Cobalt Strike Beacon configuration extractor and parser.β152Updated 3 years ago
- β80Updated 5 months ago