
DMA-ProcessDumper
Simple Process Dumper using DMA over a PCIe FPGA device

Simple Process Dumper using DMA over a PCIe FPGA device
Hands-on DFIR challenges covering digital forensics, incident response, malware analysis, and threat hunting with CTF-style flags and real-world…

Python-based memory shell injection tool for CVE-2022-22947, supporting Spring, Netty, and Godzilla memory shells with simple CLI usage.

Using CVE-2023-21768 to manual map kernel mode driver

Windows memory forensics tool for dumping files from process memory regions, searching byte patterns (PDF, JPG, SWF), and performing live process…

Hide memory artifacts using ROP and hardware breakpoints.

A bare-metal x86 utility to dump physical RAM directly to disk. Built and tested for Cold Boot Attack experiments on frozen memory.