Volatility profiles for Linux and Mac OS X
☆327Oct 30, 2022Updated 3 years ago
Alternatives and similar repositories for profiles
Users that are interested in profiles are comparing it to the libraries listed below
Sorting:
- Volatility plugins developed and maintained by the community☆376Apr 5, 2021Updated 4 years ago
- An advanced memory forensics framework☆7,972May 16, 2025Updated 9 months ago
- Plugins I've written for Volatility☆216Dec 1, 2023Updated 2 years ago
- Script for automating Linux memory capture and analysis☆13May 6, 2020Updated 5 years ago
- LiME (formerly DMD) is a Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and Linux-based devices…☆1,936Nov 9, 2025Updated 3 months ago
- Rekall Memory Forensic Framework☆1,997Oct 18, 2020Updated 5 years ago
- Script for automating Linux memory capture and analysis☆274Feb 1, 2020Updated 6 years ago
- Web App for Volatility framework☆390Jan 13, 2026Updated last month
- VolDiff: Malware Memory Footprint Analysis based on Volatility☆197Sep 12, 2017Updated 8 years ago
- Lite version of PDF X-RAY that uses no backend☆38Nov 11, 2011Updated 14 years ago
- EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.☆208Mar 12, 2025Updated 11 months ago
- threadmap plugin for Volatility Foundation☆27Aug 23, 2021Updated 4 years ago
- ☆11Aug 3, 2018Updated 7 years ago
- ☆16Jan 31, 2015Updated 11 years ago
- Tools for parsing Forensic images☆41Dec 14, 2018Updated 7 years ago
- Scripts and tools created for appx analysis talk (Magnet summit 2019)☆19Feb 26, 2024Updated 2 years ago
- CLBX file format☆20May 13, 2021Updated 4 years ago
- An advanced memory forensics framework☆96Sep 26, 2019Updated 6 years ago
- Allows you to quickly query a Windows machine for RAM artifacts☆218Jul 17, 2020Updated 5 years ago
- Various snippets created during malware analysis☆463Oct 3, 2025Updated 4 months ago
- Super timeline all the things☆2,017Feb 10, 2026Updated 2 weeks ago
- Windows Thingies in Python for live use.☆24Apr 22, 2019Updated 6 years ago
- USN to JSON☆22Apr 4, 2020Updated 5 years ago
- Autopsy Python Plugins☆373Aug 12, 2025Updated 6 months ago
- ☆82Jul 5, 2016Updated 9 years ago
- Indices for courses in SANS' Network Security Operations curriculum☆17Feb 5, 2016Updated 10 years ago
- Web interface for the Volatility Memory Forensics Framework☆260Nov 21, 2017Updated 8 years ago
- Loki - Simple IOC and YARA Scanner☆3,726Jan 12, 2026Updated last month
- Windows Live Artifacts Acquisition Script☆190Jun 20, 2022Updated 3 years ago
- Incident Response Forensic Framework☆611Nov 20, 2019Updated 6 years ago
- Registry Miner☆14Apr 10, 2018Updated 7 years ago
- Development guide for Volatility Plugins☆22Sep 6, 2017Updated 8 years ago
- PowerForensics provides an all in one platform for live disk forensic analysis☆1,427Nov 16, 2023Updated 2 years ago
- Digital forensic acquisition tool for Windows based incident response.☆347May 7, 2024Updated last year
- SIFT☆534Feb 14, 2024Updated 2 years ago
- Python installable command line utiltity for mitigation of host and key compromises.☆347Jul 23, 2021Updated 4 years ago
- A Powershell incident response framework☆1,640Nov 22, 2022Updated 3 years ago
- ☆176Jan 26, 2021Updated 5 years ago
- Repository of public reference frameworks for the DFIR community.☆121Jul 4, 2023Updated 2 years ago