volatilityfoundation / dwarf2json
convert ELF/DWARF symbol and type information into vol3's intermediate JSON
☆114Updated 4 months ago
Alternatives and similar repositories for dwarf2json:
Users that are interested in dwarf2json are comparing it to the libraries listed below
- Linpmem is a linux memory acquisition tool☆77Updated 9 months ago
- Windows symbol tables for Volatility 3☆81Updated 7 months ago
- Golang Parser for Microsoft Event Logs☆101Updated last month
- Use YARA rules on Time Travel Debugging traces☆89Updated last year
- ☆104Updated last year
- volatility explorer☆91Updated 4 years ago
- Volatility3 plugins developed and maintained by the community☆51Updated last year
- Volatility, on Docker 🐳☆33Updated 7 months ago
- The Linux port of the Sysinternals Sysmon tool.☆255Updated 3 weeks ago
- Volatility Symbol Generator for Linux Kernels☆32Updated last year
- Memory acquisition for Linux that makes sense.☆174Updated last year
- Malduck is your ducky companion in malware analysis journeys☆326Updated 8 months ago
- A guide on how to write fast and memory friendly YARA rules☆136Updated last week
- Elastic Security Labs releases☆57Updated 3 months ago
- ☆100Updated 2 years ago
- An NTFS/FAT parser for digital forensics & incident response☆198Updated 3 months ago
- capemon: CAPE's monitor☆107Updated this week
- Automatically generate AV byte signatures from sets of similar binaries.☆263Updated 2 months ago
- Alternative YARA scanning engine☆67Updated 2 years ago
- Signature engine for all your logs☆167Updated last year
- Red Canary's eBPF Sensor☆101Updated 7 months ago
- Symbol hash for ELF files☆108Updated 3 years ago
- YARI is an interactive debugger for YARA Language.☆88Updated last month
- ☆18Updated 2 years ago
- pyGoRE - Python library for analyzing Go binaries☆64Updated 3 years ago
- Visually inspect and force decode YARA and regex matches found in both binary and text data. With Colors.☆112Updated 2 months ago
- The Dissect module tying all other Dissect modules together. It provides a programming API and command line tools which allow easy access…☆50Updated this week
- Collection of Linux and macOS Volatility3 Intermediate Symbol Files (ISF), suitable for memory analysis 🔍☆95Updated last week
- JPCERT/CC public YARA rules repository☆106Updated 2 months ago
- Arya is a unique tool that produces pseudo-malicious files meant to trigger YARA rules. You can think of it like a reverse YARA.☆243Updated 2 years ago