./security/volatility, Advanced memory forensics framework

[ CVSweb ] [ Homepage ] [ RSS ] [ Required by ] [ Add to tracker ]


Branch: pkgsrc-2016Q2, Version: 2.4, Package name: volatility-2.4, Maintainer: pettai

The Volatility Framework is a completely open collection of tools,
implemented in Python under the GNU General Public License, for the
extraction of digital artifacts from volatile memory (RAM) samples.
The extraction techniques are performed completely independent of the
system being investigated but offer visibilty into the runtime state
of the system. The framework is intended to introduce people to the
techniques and complexities associated with extracting digital artifacts
from volatile memory samples and provide a platform for further work into
this exciting area of research.


Required to run:
[devel/py-setuptools] [devel/py-distorm3] [lang/python27]

Master sites:

SHA1: 77ae1443062a5103c63377aee6170d6e09ca6354
RMD160: 9db862c278cc09e2e9f197f30a79ee28d22fd905
Filesize: 2272.962 KB

Version history: (Expand)