-
-
-
velociraptor-docs Public
Forked from Velocidex/velociraptor-docsDocumentation site for Velociraptor
HTML Other UpdatedSep 19, 2023 -
DFRWS-USA-2023 Public
Additional material for the DFRWS USA 2023 submission "Windows memory forensics: Identification of (malicious) modifications in memory-mapped image files"
Python MIT License UpdatedJul 13, 2023 -
-
ConventionEngine Public
Forked from stvemillertime/ConventionEngineConventionEngine - A Yara Rulepack for PDB Path Hunting
YARA UpdatedMar 15, 2023 -
Process-Hollowing Public
Forked from m0n0ph1/Process-HollowingFork of m0n0ph1/Process-Hollowing with some modifications
-
-
HollowFind Public
Forked from monnappa22/HollowFindHollowfind is a Volatility plugin to detect different types of process hollowing techniques used in the wild to bypass, confuse, deflect and divert the forensic analysis techniques. The plugin dete…
Python UpdatedSep 29, 2022 -
sigma Public
Forked from SigmaHQ/sigmaGeneric Signature Format for SIEM Systems
Python Other UpdatedJun 17, 2022 -
ReflectiveDLLInjection Public
Forked from stephenfewer/ReflectiveDLLInjectionReflective DLL injection is a library injection technique in which the concept of reflective programming is employed to perform the loading of a library from memory into a host process.
-
volatility3 Public
Forked from volatilityfoundation/volatility3Volatility 3.0 development
Python Other UpdatedJun 16, 2021 -
-
rekall Public
Forked from google/rekallRekall Memory Forensic Framework
Python GNU General Public License v2.0 UpdatedAug 5, 2020 -
-
-
-
BlackHat-EU-2019 Public
This is the Online repository for the Black Hat EU 2019 Talk: Detecting (un)Intentionally Hidden Injected Code by Examining Page Table Entries.
-
-
insinuator-snippets Public
Forked from ernw/insinuator-snippetsA collection of code snippets used in blog posts.
Python UpdatedOct 29, 2019 -
Hashtest Public
Forked from a-white/HashtestValidate integrity of in memory code
-
rekall-profiles Public
Forked from google/rekall-profilesPublic Profile Repository for Rekall Memory Forensic.
HTML UpdatedApr 24, 2018 -
xssValidator Public
Forked from NetSPI/xssValidatorThis is a burp intruder extender that is designed for automation and validation of XSS vulnerabilities.
Java MIT License UpdatedAug 26, 2014