
vol-rs
Volatility 3 ported to Rust. Same output, much faster.

Volatility 3 ported to Rust. Same output, much faster.

UNIX-like reverse engineering framework and command-line toolset.

Framework for hashing declared permissions in Chromium extensions and APKs, enabling clustering, hunting, and pivoting across potentially malicious…

Advanced framework for extracting digital artifacts from volatile memory (RAM) samples, enabling deep forensic analysis of system runtime state…

Process heap analysis framework - Windows/Linux - record type inference and forensics

Forensic Analysis for Mobile Apps (FAMA) -- module for the Autopsy Forensic Browser

An advanced memory forensics framework

Python scriptable Reverse Engineering Sandbox, a Virtual Machine instrumentation and inspection framework based on QEMU


Open source Android Forensics app and framework