504ENSICS Labs (504ensicsLabs)

504ENSICS Labs

504ensicsLabs

Geek Repo

Digital Forensics & Computer Security Research

Location:New Orleans, LA

Home Page:http://www.504ENSICS.com

Github PK Tool:Github PK Tool

504ENSICS Labs's repositories

LiME

LiME (formerly DMD) is a Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and Linux-based devices, such as those powered by Android. The tool supports acquiring memory either to the file system of the device or over the network. LiME is unique in that it is the first tool that allows full memory captures from Android devices. It also minimizes its interaction between user and kernel space processes during acquisition, which allows it to produce memory captures that are more forensically sound than those of other tools designed for Linux memory acquisition.

Language:CLicense:GPL-2.0Stargazers:1681Issues:81Issues:91

DAMM

Differential Analysis of Malware in Memory

Language:PythonLicense:GPL-2.0Stargazers:208Issues:31Issues:1

registrydecoder

This is a copy of the Registry Decoder repository from Google Code.

Language:PythonStargazers:27Issues:7Issues:0

find_times

Discover potential timestamps within the Windows Registry

Language:PythonLicense:GPL-2.0Stargazers:18Issues:8Issues:0

regdecoderlive

This is a copy of the Registry Decoder Live repository from Google Code

Language:PythonStargazers:9Issues:6Issues:0