#1Tools for analyzing RAM dumps to find running processes, network connections, and hidden malware.
Kitploit recommended

Limon is a sandbox developed as a research project written in python, which automatically collects, analyzes, and reports on the run time indicators…
Grab ssh keys from ssh-agent

Incident Response Forensic Framework

:knife: Scan memory for secrets and more. Maybe eventually a full /proc toolkit.

DLL Injection tool to unlock guest VMs

Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs

Script for automating Linux memory capture and analysis

Hands-on DFIR challenges covering digital forensics, incident response, malware analysis, and threat hunting with CTF-style flags and real-world…

Collecting & Hunting for IOCs with gusto and style

Physmem2profit can be used to create a minidump of a target hosts' LSASS process by analysing physical memory remotely

Windows Analysis and Research Toolkit

Code Injection, Inject malicious payload via pagetables pml4.

This tool allows one to recover old RDP (mstsc) session information in the form of broken PNG files. These PNG files allows Red Team member to…

The ultimate steganography and digital forensics toolkit. Hide and extract data across images, audio, video, documents, and network packets, or run…

Virtual Machine Introspection, Tracing & Debugging

A revival of the classic and legendary KsDumper

Threadless Module Stomping In Rust with some features (In memory of those murdered in the Nova party massacre)

Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux