
subparse
Modular malware analysis artifact collection and correlation framework

Modular malware analysis artifact collection and correlation framework

Advanced framework for extracting digital artifacts from volatile memory (RAM) samples, enabling deep forensic analysis of system runtime state…

An advanced memory forensics framework


Volatility 3 ported to Rust. Same output, much faster.

Process heap analysis framework - Windows/Linux - record type inference and forensics

UNIX-like reverse engineering framework and command-line toolset

Binary analysis and management framework

A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.

Swift-based macOS incident response framework for collecting and analyzing host artifacts, including filesystem timestamps, browser data, unified…

An automatic unpacker and logger for DotNet Framework targeting files

A framework that create an advanced stealthy dropper that bypass most AVs and have a lot of tricks

Remote live forensics and incident response framework with Python agent for collecting forensic data from endpoints, including memory, disk, and…

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from…

Incident Response Forensic Framework


Digital Forensics Intelligence Framework

A curated list of awesome Hacking tutorials, tools and resources