#

memory-forensics

https://static.github-zh.com/github_avatars/hasherezade?size=40

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).

C++ 3.43 k
8 天前
https://static.github-zh.com/github_avatars/hasherezade?size=40

Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).

C 2.22 k
2 天前
stuxnet999/MemLabs
https://static.github-zh.com/github_avatars/stuxnet999?size=40

Educational, CTF-styled labs for individuals interested in Memory Forensics

Shell 1.76 k
5 年前
https://static.github-zh.com/github_avatars/microsoft?size=40

AVML - Acquire Volatile Memory for Linux

Rust 989
7 天前
https://static.github-zh.com/github_avatars/LETHAL-FORENSICS?size=40

MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR

PowerShell 674
2 个月前
https://static.github-zh.com/github_avatars/cado-security?size=40

Volatile Artifact Collector collects a snapshot of volatile data from a system. It tells you what is happening on a system, and is of particular use when investigating a security incident.

Python 256
10 个月前
https://static.github-zh.com/github_avatars/LETHAL-FORENSICS?size=40

Collect-MemoryDump - Automated Creation of Windows Memory Snapshots for DFIR

PowerShell 248
6 个月前
https://static.github-zh.com/github_avatars/gleeda?size=40

Allows you to quickly query a Windows machine for RAM artifacts

Python 220
5 年前
https://static.github-zh.com/github_avatars/asiamina?size=40

A course on "Digital Forensics" designed and offered in the Computer Science Department at Texas Tech University

Rich Text Format 194
2 年前
https://static.github-zh.com/github_avatars/msuiche?size=40
C 185
1 年前
https://static.github-zh.com/github_avatars/cado-security?size=40

Rip Raw is a small tool to analyse the memory of compromised Linux systems.

Python 132
4 年前
https://static.github-zh.com/github_avatars/Apr4h?size=40

C# Implementation of Jared Atkinson's Get-InjectedThread.ps1

C# 54
4 年前
https://static.github-zh.com/github_avatars/ytisf?size=40

A short and small memory forensics helper.

Python 52
8 年前
https://static.github-zh.com/github_avatars/vobst?size=40

Generate Volatility3 profiles from BTF.

Rust 28
9 个月前
loading...
Website
Wikipedia