Volatility plugins developed and maintained by the community
-
Updated
Apr 5, 2021 - Python
Volatility plugins developed and maintained by the community
Run several volatility plugins at the same time
volatility explorer
Volatility Explorer Suit
PS / Bash / Python / Other scripts For FUN!
Volatility Framework plugin to detect various types of hooks as performed by banking Trojans
A Volatility plugin for finding sqlite database rows
Volatility plugin to validate Authenticode-signed processes, either with embedded signature or catalog-signed
A suite of Volatility 3 plugins for memory forensics of Docker containers
ETW forensic tool for Volatility3 plugin
Volatility 3 plugins to extract a module as complete as possible
A tool to automate memory dump processing using Volatility, including optional Splunk integration.
Volatility plugin to search for all Autostart Extensibility Points (AESPs)
Volatility plugin to calculate and compare Windows processes fuzzy hashes
Volatility plugin to retrieve namespaces and relative processes from a memory dump.
Volatility plugin to detect malicious code thanks to ClamAV
CASE (v0.1.0) implementation into Volatility.
Volatility plugin to obtain the number of the resident memory pages per module (exe or dll) and per driver from a Windows memory dump.
Add a description, image, and links to the volatility-plugins topic page so that developers can more easily learn about it.
To associate your repository with the volatility-plugins topic, visit your repo's landing page and select "manage topics."