Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Categories

Memory Forensics

Tools for analyzing RAM dumps to find running processes, network connections, and hidden malware.

Kitploit recommended

Top tools

10 selected
volatility3 preview#1

volatility3

GitHubvolatilityfoundation/volatility3
4.3k14h 52m ago
avml preview#3

avml

GitHubmicrosoft/avml
1.1k20 days ago
velociraptor preview#5

velociraptor

GitHubvelocidex/velociraptor
4.2k14h 8m ago
LiME preview#6

LiME

GitHubjtsylve/lime
2.0k5 months ago
community preview#7

community

GitHubvolatilityfoundation/community
3775 years ago
dwarf2json preview#8

dwarf2json

GitHubvolatilityfoundation/dwarf2json
1581 year ago
dissect preview#9

dissect

GitHubfox-it/dissect
1.1k6 months ago
flare-floss preview#10

flare-floss

GitHubmandiant/flare-floss
4.1k18h 9m ago
capa preview#11

capa

GitHubmandiant/capa
6.1k16h 17m ago
yara-x preview#12

yara-x

GitHubvirustotal/yara-x
1.2k12 days ago
NewestRelevanceMost popularRecently updated
621 results
libunwind_CVE-2015-3239_After preview

libunwind_CVE-2015-3239_After

GitHubrenukaselvar/libunwind_cve-2015-3239_after

Library for unwinding processor call stacks, supporting multiple architectures and operating systems, with build and regression testing instructions.

memory-forensicsvulnerability-analysisexploitation+3
1 year ago
CVE-2026-84118-who-labeled-the-crit-as-a-high preview

CVE-2026-84118-who-labeled-the-crit-as-a-high

GitHubsneakynachos/cve-2026-84118-who-labeled-the-crit-as-a-high

Proof-of-concept for CVE-2026-84118, a SpiderMonkey GC use-after-free leading to out-of-bounds read/write and potential code execution. Includes…

memory-forensicsvulnerability-analysisexploitation+2
121h 18m ago
umbra preview

umbra

GitHubymsniper/umbra

External read-only game overlay for Linux. Derived offsets, composed skeletons, optional kernel module for ptrace-independent memory reads and…

memory-forensicsexploitationreverse-engineering+1
33 days ago
dnSpy preview
Archived

dnSpy

GitHubdnspy/dnspy

.NET debugger and assembly editor

static-analysisdynamic-analysis-sandboxingmemory-forensics+8
29.7k5 years ago
volatility preview
Archived

volatility

GitHubvolatilityfoundation/volatility

An advanced memory forensics framework

memory-forensicsvulnerability-analysisreverse-engineering+4
8.1k1 year ago
frida-dexdump preview
Archived

frida-dexdump

GitHubhluwa/frida-dexdump

A frida tool to dump dex in memory to support security engineers analyzing malware.

android-securitydynamic-analysis-sandboxingmemory-forensics+5
4.6k3 years ago
rekall preview
Archived

rekall

GitHubgoogle/rekall

Rekall Memory Forensic Framework

memory-forensicsreverse-engineeringforensics+3
2.0k5 years ago
osxcollector preview
Archived

osxcollector

GitHubyelparchive/osxcollector

A forensic evidence collection & analysis toolkit for OS X

disk-forensicsosintmemory-forensics+3
1.9k7 years ago
pyrebox preview
Archived

pyrebox

GitHubcisco-talos/pyrebox

Python scriptable Reverse Engineering Sandbox, a Virtual Machine instrumentation and inspection framework based on QEMU

dynamic-analysis-sandboxingmemory-forensicsreverse-engineering+5
1.7k2 years ago
pe_tree preview
Archived

pe_tree

GitHubblackberry/pe_tree

Python module for viewing Portable Executable (PE) files in a tree-view using pefile and PyQt5. Can also be used with IDA Pro and Rekall to dump…

memory-forensicsvulnerability-analysisreverse-engineering+5
1.3k4 years ago
mig preview
Archived

mig

GitHubmozilla/mig

Distributed & real time digital forensics at the speed of the cloud

disk-forensicsmemory-forensicsvulnerability-analysis+6
1.2k6 years ago
PPLdump preview
Archived

PPLdump

GitHubitm4n/ppldump

Dump the memory of a PPL with a userland exploit

privilege-escalationmemory-forensicsexploitation+3
8934 years ago
SilkETW preview
Archived

SilkETW

GitHubmandiant/silketw

C# wrapper for ETW that serializes kernel and user-mode event data to JSON for threat hunting, malware analysis, and incident response, with Yara…

defensive-toolsmemory-forensicsforensics+8
8523 years ago
linux-explorer preview
Archived

linux-explorer

GitHubintezer/linux-explorer

Easy-to-use live forensics toolbox for Linux endpoints

osintmemory-forensicsvulnerability-analysis+7
4052 years ago
matrix-rs preview
Archived

matrix-rs

GitHubmemn0ps/matrix-rs

Rusty Hypervisor - Windows Kernel Blue Pill Type-2 Hypervisor in Rust (Codename: Matrix)

memory-forensicsdynamic-code-analysisids-ips-evasion+3
3563 months ago
invoker preview
Archived

invoker

GitHubivan-sincek/invoker

Penetration testing utility and antivirus assessment tool.

privilege-escalationmemory-forensicsexploitation+6
3123 years ago
CVE-2022-21971 preview
Archived

CVE-2022-21971

GitHub0vercl0k/cve-2022-21971

PoC for CVE-2022-21971 "Windows Runtime Remote Code Execution Vulnerability"

memory-forensicsvulnerability-analysisexploitation+3
3024 years ago
EDRSandblast-GodFault preview
Archived

EDRSandblast-GodFault

GitHubgabriellandau/edrsandblast-godfault

EDRSandblast-GodFault

defensive-toolsprivilege-escalationmemory-forensics+4
2733 years ago
Previous1…333435Next