Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Categories

Memory Forensics

Tools for analyzing RAM dumps to find running processes, network connections, and hidden malware.

Kitploit recommended

Top tools

10 selected
volatility3 preview#1

volatility3

GitHubvolatilityfoundation/volatility3
4.3k1 day ago
avml preview#3

avml

GitHubmicrosoft/avml
1.1k22 days ago
velociraptor preview#5

velociraptor

GitHubvelocidex/velociraptor
4.2k7h 56m ago
LiME preview#6

LiME

GitHubjtsylve/lime
2.0k5 months ago
community preview#7

community

GitHubvolatilityfoundation/community
3775 years ago
dwarf2json preview#8

dwarf2json

GitHubvolatilityfoundation/dwarf2json
1581 year ago
dissect preview#9

dissect

GitHubfox-it/dissect
1.1k6 months ago
flare-floss preview#10

flare-floss

GitHubmandiant/flare-floss
4.1k1 day ago
capa preview#11

capa

GitHubmandiant/capa
6.1k1 day ago
yara-x preview#12

yara-x

GitHubvirustotal/yara-x
1.2k13 days ago
NewestRelevanceMost popularRecently updated
623 results
Vol3xp preview

Vol3xp

GitHubmemoryforensics1/vol3xp

Volatility Explorer Suit (volatility 3)

memory-forensicsreverse-engineeringforensics+3
703 years ago
memscan preview

memscan

GitHubnccgroup/memscan

Searches for strings, regex, credit card numbers of magnetic stripe card tracks in a Windows process's memory space

reconnaissancememory-forensicsdata-exfiltration+5
1295 years ago
CVE-2025-24204 preview

CVE-2025-24204

GitHubffri/cve-2025-24204

PoC and technical details of CVE-2025-24204

privilege-escalationencryption-decryption-toolsmemory-forensics+2
11311 months ago
heapinfo preview

heapinfo

GitHubdavid942j/heapinfo

An interactive memory info for pwning / exploiting

memory-forensicsexploitationdebuggers+3
983 years ago
IronPE preview

IronPE

GitHubiss4cf0ng/ironpe

Rust-based Windows PE manual loader that maps and executes x86/x64 executables from memory, demonstrating internal loader behavior and PE structure…

memory-forensicsexploitationreverse-engineering+5
1246 months ago
yara-ttd preview

yara-ttd

GitHubairbus-cert/yara-ttd

Use YARA rules on Time Travel Debugging traces

dynamic-analysis-sandboxingmemory-forensicsreverse-engineering+3
973 years ago
gargamel preview

gargamel

GitHublifars/gargamel

A forensic evidence acquirer

memory-forensicsforensicsinformation-gathering+3
865 years ago
KilledProcessCanary preview

KilledProcessCanary

GitHubnccgroup/killedprocesscanary

A canary designed to minimize the impact from certain Ransomware actors

defensive-toolsmemory-forensicsdigital-forensics+2
1015 years ago
SentinelNav preview

SentinelNav

GitHubsmolfiddle/sentinelnav

SentinelNav: zero-dependency, pure Python binary visualization and forensics tool.

memory-forensicsreverse-engineeringforensics+4
1469 months ago
exploit-cve-2017-5715 preview

exploit-cve-2017-5715

GitHubopsxcq/exploit-cve-2017-5715

Spectre exploit

memory-forensicsvulnerability-analysisexploitation+3
548 years ago
oppo-ghostlock preview

oppo-ghostlock

GitHubpubglite55/oppo-ghostlock

OPPO Find N2 GhostLock (CVE-2026-43499) exploit adaptation

android-securityprivilege-escalationexploit-frameworks+7
602 days ago
splinter preview

splinter

GitHubawrped/splinter

Runtime JVM analysis toolkit for inspecting classes, methods, fields, constant pool, and bytecode

dynamic-analysis-sandboxingmemory-forensicsdynamic-code-analysis+4
801 month ago
AzTokenFinder preview

AzTokenFinder

GitHubhackmichnet/aztokenfinder

Offensive token-harvesting utility that searches x64 process memory and TokenBroker cache files for Azure AD/O365 JWT tokens across Office, Edge,…

memory-forensicspost-exploitationpenetration-testing+3
1093 years ago
proctools preview

proctools

GitHubmlcsec/proctools

Small toolkit for extracting information and dumping sensitive strings from Windows processes

memory-forensicsforensicsinformation-gathering+2
1162 years ago
KslKatzBof preview

KslKatzBof

GitHubprinciplecheck/kslkatzbof

Beacon Object File for in-line LSASS credential extraction using the KslD.sys BYOVD technique. Extracts NT hashes and cleartext passwords from…

privilege-escalationmemory-forensicsexploitation+4
887 days ago
CVE-2026-50416-writeup-and-poc preview

CVE-2026-50416-writeup-and-poc

GitHubkarollooool/cve-2026-50416-writeup-and-poc

CVE-2026-50416: Windows 11 KASLR bypass

exploit-frameworksmemory-forensicsvulnerability-analysis+7
4424 days ago
windbg-mcp preview

windbg-mcp

GitHubgengstah/windbg-mcp

An MCP (Model Context Protocol) server that turns all pybag Windows debugger functions into native MCP tools. It lets MCP-compatible clients (Claude…

dynamic-analysis-sandboxingmemory-forensicsvulnerability-analysis+7
864 months ago
antipwny preview

antipwny

GitHubrvazarkar/antipwny

A host based IDS written in C# Targetted at Metasploit

defensive-toolsmemory-forensicspersistence-mechanisms+3
4512 years ago
Previous1…121314…35Next