
vol-rs
Volatility 3 ported to Rust. Same output, much faster.

Volatility 3 ported to Rust. Same output, much faster.

An advanced memory forensics framework

Advanced framework for extracting digital artifacts from volatile memory (RAM) samples, enabling deep forensic analysis of system runtime state…

UNIX-like reverse engineering framework and command-line toolset.

Forensic Analysis for Mobile Apps (FAMA) -- module for the Autopsy Forensic Browser

Python scriptable Reverse Engineering Sandbox, a Virtual Machine instrumentation and inspection framework based on QEMU


Open source Android Forensics app and framework

Framework for hashing declared permissions in Chromium extensions and APKs, enabling clustering, hunting, and pivoting across potentially malicious…

Process heap analysis framework - Windows/Linux - record type inference and forensics