avml

Memory acquisition tool

A tool that captures volatile memory images from Linux systems without prior knowledge of the target OS or kernel.

AVML - Acquire Volatile Memory for Linux

GitHub

883 stars
32 watching
77 forks
Language: Rust
last commit: almost 2 years ago
Linked from 3 awesome lists

linux-securitymemory-forensicsrust

Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
velocidex/winpmemA tool for acquiring and manipulating physical memory in Windows708
natebrune/fmemA Linux kernel module designed to help analyze volatile memory without the limitations of traditional memory dumping tools.115
alteryx/evalmlAutomates machine learning pipeline construction and optimization788
crowdstrike/supermemA tool for processing Windows memory images to extract relevant information260
shanek2/invtero.netAnalyzes and validates physical memory from various systems to extract process information and hypervisor details281
504ensicslabs/limeA tool that captures and extracts volatile memory from Linux devices in a forensically sound way.1,739
rek7/mxtractAnalyzes and dumps memory to extract sensitive information from running processes582
ufrisk/leechcoreA library and remote memory acquisition agent for acquiring physical memory using various methods.540
ftramer/steal-mlA tool for extracting machine learning models from cloud-based services using prediction APIs344
microsoft/kernel-memoryAn AI service for efficient indexing and querying of datasets using LLMs and natural language processing techniques.1,660
ytisf/muninnA tool to assist in memory forensics analysis on Windows systems by automating the process of extracting and exporting relevant data from memory images.52
stcarrez/matA tool to analyze memory usage in programs7
ajmartel/irtriageAutomated incident response tool for collecting critical system information during forensic analysis of Windows systems.130
autoviml/auto_vimlAutomatically builds multiple machine learning models using a single line of code.526
kost/memdumpA tool to extract and display the contents of a system's physical memory12