
silph
Stealthy In-Memory Local Password Harvester (SILPH) tool: dump LSA, SAM and DCC2 with indirect syscall

Stealthy In-Memory Local Password Harvester (SILPH) tool: dump LSA, SAM and DCC2 with indirect syscall

tool to extract passwords from TeamViewer memory using Frida

This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone is created,…

Hide memory artifacts using ROP and hardware breakpoints.

Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

MultiDump is a post-exploitation tool for dumping and extracting LSASS memory discreetly.

DLL Injection tool to unlock guest VMs

A little tool to play with the Seclogon service

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

A Linux version of the ProcDump Sysinternals tool

OS X Auditor is a free Mac OS X computer forensics tool

QCSuper is a tool communicating with Qualcomm-based phones and modems, allowing to capture raw 2G/3G/4G radio frames, among other things.

A post-exploitation powershell tool for extracting juicy info from memory.

Windows tool for dumping malware PE files from memory back to disk for analysis.

Inception is a physical memory manipulation and hacking tool exploiting PCI-based DMA. The tool can attack over FireWire, Thunderbolt, ExpressCard,…

Portable, dependency-free incident response tool that automates forensic artifact collection from Unix-like systems, including memory acquisition,…

The multi-platform memory acquisition tool.

memory search and patch tool on debuggable apk without root & ndk