
YAMA-dev
Yet Another Memory Analyzer for malware detection
forensicsincident-responsemalware-analysis+1
243 years ago

Yet Another Memory Analyzer for malware detection

Cortex: a Powerful Observable Analysis and Active Response Engine

Automates Windows memory forensics and DFIR workflows with MemProcFS: YARA/ClamAV scanning, process anomaly detection, and artifact/log extraction.

Volatility Explorer Suit (volatility 3)

Runtime behavioral analysis tool that sandboxes suspicious packages in Docker, traces syscalls with strace, maps process cascades into directed…