Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Memory Forensics | Kitploit
Categories

Memory Forensics

Tools for analyzing RAM dumps to find running processes, network connections, and hidden malware.

Kitploit recommended

Top tools

10 selected
volatility3 preview#1

volatility3

GitHubvolatilityfoundation/volatility3
4.3k15h 53m ago
avml preview#3

avml

GitHubmicrosoft/avml
1.1k20 days ago
velociraptor preview#5

velociraptor

GitHubvelocidex/velociraptor
4.2k15h 8m ago
LiME preview#6

LiME

GitHubjtsylve/lime
2.0k5 months ago
community preview#7

community

GitHubvolatilityfoundation/community
3775 years ago
dwarf2json preview#8

dwarf2json

GitHubvolatilityfoundation/dwarf2json
1581 year ago
dissect preview#9

dissect

GitHubfox-it/dissect
1.1k6 months ago
flare-floss preview#10

flare-floss

GitHubmandiant/flare-floss
4.1k19h 10m ago
capa preview#11

capa

GitHubmandiant/capa
6.1k17h 18m ago
yara-x preview#12

yara-x

GitHubvirustotal/yara-x
1.2k12 days ago
NewestRelevanceMost popularRecently updated
621 results
BareMetal-RAM-Dumper preview

BareMetal-RAM-Dumper

GitHubpiat0n/baremetal-ram-dumper

A bare-metal x86 utility to dump physical RAM directly to disk. Built and tested for Cold Boot Attack experiments on frozen memory.

memory-forensicsexploitationforensics+3
1011 month ago
zirconium preview

zirconium

GitHubrobertmotr/zirconium

DLL-injectable internal game cheat for Plutonium BO2 zombies

memory-forensicsexploitationreverse-engineering+2
129 days ago
DumpBrowserSecrets preview

DumpBrowserSecrets

GitHubmaldev-academy/dumpbrowsersecrets

Extracts browser-stored data such as refresh tokens, cookies, saved credentials, credit cards, autofill entries, browsing history, and bookmarks from…

password-crackingencryption-decryption-toolsmemory-forensics+8
7983 months ago
matrix-rs preview
Archived

matrix-rs

GitHubmemn0ps/matrix-rs

Rusty Hypervisor - Windows Kernel Blue Pill Type-2 Hypervisor in Rust (Codename: Matrix)

memory-forensicsdynamic-code-analysisids-ips-evasion+3
3563 months ago
bios_memimage preview
Archived

bios_memimage

GitHubdbrant/bios_memimage

RAM imaging utility.

memory-forensicsdigital-forensicsincident-response
910 years ago
DAMM preview
Archived

DAMM

GitHub504ensicslabs/damm

Differential Analysis of Malware in Memory

memory-forensicsvulnerability-analysisforensics+3
2159 years ago
cve-2015-4843-type-confusion-phrack preview
Archived

cve-2015-4843-type-confusion-phrack

GitHubsoteria-research/cve-2015-4843-type-confusion-phrack

Demonstrates type confusion and heap overflow exploits for CVE-2015-4843 in Java, with demos for aarch64 and Morello, highlighting CHERI capability…

memory-forensicsvulnerability-analysisexploitation+3
2 years ago
CVE-2022-21974 preview
Archived

CVE-2022-21974

GitHub0vercl0k/cve-2022-21974

PoC for CVE-2022-21974 "Roaming Security Rights Management Services Remote Code Execution Vulnerability"

memory-forensicsvulnerability-analysisexploitation+3
574 years ago
CVE-2022-21971 preview
Archived

CVE-2022-21971

GitHub0vercl0k/cve-2022-21971

PoC for CVE-2022-21971 "Windows Runtime Remote Code Execution Vulnerability"

memory-forensicsvulnerability-analysisexploitation+3
3024 years ago
CVE-2021-32537 preview
Archived

CVE-2021-32537

GitHub0vercl0k/cve-2021-32537

PoC for CVE-2021-32537: an out-of-bounds memory access that leads to pool corruption in the Windows kernel.

memory-forensicsvulnerability-analysisexploitation+1
555 years ago
CVE-2020-1206-POC preview
Archived

CVE-2020-1206-POC

GitHubjamf/cve-2020-1206-poc

CVE-2020-1206 Uninitialized Kernel Memory Read POC

memory-forensicsvulnerability-analysisexploitation+3
1446 years ago
osxcollector preview
Archived

osxcollector

GitHubyelparchive/osxcollector

A forensic evidence collection & analysis toolkit for OS X

disk-forensicsosintmemory-forensics+3
1.9k7 years ago
SilkETW preview
Archived

SilkETW

GitHubmandiant/silketw

C# wrapper for ETW that serializes kernel and user-mode event data to JSON for threat hunting, malware analysis, and incident response, with Yara…

defensive-toolsmemory-forensicsforensics+8
8523 years ago
dnSpy preview
Archived

dnSpy

GitHubdnspy/dnspy

.NET debugger and assembly editor

static-analysisdynamic-analysis-sandboxingmemory-forensics+8
29.7k5 years ago
varc preview
Archived

varc

GitHubcado-security/varc

Volatile Artifact Collector collects a snapshot of volatile data from a system. It tells you what is happening on a system, and is of particular use…

container-securitymemory-forensicsforensics+3
2541 year ago
EDRSandblast-GodFault preview
Archived

EDRSandblast-GodFault

GitHubgabriellandau/edrsandblast-godfault

EDRSandblast-GodFault

defensive-toolsprivilege-escalationmemory-forensics+4
2733 years ago
dumpscan preview
Archived

dumpscan

GitHubdaddycocoaman/dumpscan

Finding secrets in kernel and user memory

encryption-decryption-toolsmemory-forensicsforensics+4
1183 years ago
rip_raw preview
Archived

rip_raw

GitHubcado-security/rip_raw

Rip Raw is a small tool to analyse the memory of compromised Linux systems.

memory-forensicsforensicsdata-recovery+3
1334 years ago
Previous1…333435Next