memory-forensics
Here are 65 public repositories matching this topic...
Language:All
Sort:Most stars
Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).
- Updated
Mar 16, 2025 - C++
Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory patches).
- Updated
Feb 22, 2025 - C
Educational, CTF-styled labs for individuals interested in Memory Forensics
- Updated
Mar 8, 2021 - Shell
Dynamic unpacker based on PE-sieve
- Updated
Mar 16, 2025 - C
MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR
- Updated
Mar 10, 2025 - PowerShell
Data Visualization Plugin for IDA Pro
- Updated
Dec 6, 2022 - Python
Volatile Artifact Collector collects a snapshot of volatile data from a system. It tells you what is happening on a system, and is of particular use when investigating a security incident.
- Updated
Nov 18, 2024 - Python
Collect-MemoryDump - Automated Creation of Windows Memory Snapshots for DFIR
- Updated
Mar 10, 2025 - PowerShell
Allows you to quickly query a Windows machine for RAM artifacts
- Updated
Jul 17, 2020 - Python
A course on "Digital Forensics" designed and offered in the Computer Science Department at Texas Tech University
- Updated
Oct 5, 2023 - Rich Text Format
Rip Raw is a small tool to analyse the memory of compromised Linux systems.
- Updated
Jan 31, 2022 - Python
A curated list of awesome malware analysis tools and resources
- Updated
Jan 8, 2022
C# Implementation of Jared Atkinson's Get-InjectedThread.ps1
- Updated
Jul 11, 2021 - C#
A short and small memory forensics helper.
- Updated
Oct 18, 2017 - Python
Volatility, on Docker 🐳
- Updated
Jul 8, 2024 - Dockerfile
A script to assist in processing forensic RAM captures for malware triage
- Updated
Feb 4, 2021 - Shell
Improve this page
Add a description, image, and links to thememory-forensics topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with thememory-forensics topic, visit your repo's landing page and select "manage topics."