Web interface for the Volatility Memory Forensics Framework
The main features of jameshabben/evolve are: Memory Analysis Tools, Memory Forensics.
Open-source alternatives to jameshabben/evolve include: ufrisk/memprocfs — MemProcFS is a volatile memory analysis tool and cross-platform memory acquisition system. It functions as a memory… volatilityfoundation/volatility — Volatility is a memory forensics framework and digital forensics tool designed to extract and analyze evidence from… ldo-cert/orochi — The Volatility Collaborative GUI. shanek2/invtero.net — inVtero.net: A high speed (Gbps) Forensics, Memory integrity & assurance. Includes offensive & defensive memory… aim4r/voldiff — VolDiff: Malware Memory Footprint Analysis based on Volatility. zardus/ctf-tools — This project is a security tool installation framework and binary analysis toolkit designed to automate the deployment…
inVtero.net: A high speed (Gbps) Forensics, Memory integrity & assurance. Includes offensive & defensive memory capabilities. Find/Extract processes, hypervisors (including nested) in memory dumps using microarchitechture independent Virtual Machiene Introspection techniques
MemProcFS is a volatile memory analysis tool and cross-platform memory acquisition system. It functions as a memory forensic virtual file system, mapping physical memory and kernel objects into a virtual directory structure that allows users to analyze system artifacts using standard file system tools. The project distinguishes itself by providing a virtual file system for memory forensics, enabling the browsing and querying of physical memory as read-only files and folders. It also incorporates a Yara-based memory scanner to identify malware signatures and injected code within physical memor