
systeminformer
Real-time Windows system monitor with advanced process, network, and disk analysis, stack trace debugging, malware detection, and service management.…

Real-time Windows system monitor with advanced process, network, and disk analysis, stack trace debugging, malware detection, and service management.…


A package for capturing and analyzing network flow data and intraflow data, for network research, forensics, and security monitoring.

Generates YARA rules from installed software on a running OS to baseline known software and find similar installations across digital forensic…

An advanced memory forensics framework

Volatility 3 ported to Rust. Same output, much faster.

Community-maintained Volatility plugin collection for memory forensics, extending memory dump analysis with modules for malware and process…

Advanced framework for extracting digital artifacts from volatile memory (RAM) samples, enabling deep forensic analysis of system runtime state…

A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on…

Direct Memory Access (DMA) Attack Software

Tools to enumerate Windows Firewall Hook Drivers on Windows 2000, XP and 2003

A collection of awesome software, libraries, documents, books, resources and cools stuffs about security.

Android Connections Forensics

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

📱 Andriller - is software utility with a collection of forensic tools for smartphones. It performs read-only, forensically sound, non-destructive…

A tool for forensic file system reconstruction.


volatility explorer (volatility 2)