Loading...
Digital Forensics tools for Memory Forensics: the Digital Forensics options most relevant when Memory Forensics is the priority, compared side by side so you can shortlist faster. Filter by pricing or specialization. Independent and vendor-neutral: our scores and rankings are earned, never bought — sponsored placement is always labeled.
We cover 54 cybersecurity tools
GUI-based memory forensic capture tool for cyber forensics and cyber crime investigation.
A forensic tool to find hidden processes and TCP/UDP ports by rootkits or other hidden techniques.
Hardware write-blockers and forensic tools for secure evidence acquisition.
Digital forensics platform for mobile & endpoint evidence extraction and analysis.
Digital forensics platform for evidence acquisition, analysis, and DFIR.
A powerful tool for analyzing and visualizing system activity timelines.
Belkasoft offers cybersecurity solutions, training, and tools for businesses, law enforcement, and academia.
Powerful debugging tool with extensive features and extensions for memory dump analysis and crash dump analysis.
A Python module for orchestrating remote forensic data acquisition and analysis from Linux instances using Amazon SSM.
Margarita Shotgun is a Python tool that enables remote memory acquisition from target systems through command line interface, supporting Linux distributions and other operating systems via Docker containers.
A tool for fixing acquired .evt Windows Event Log files in digital forensics.
Incident response and digital forensics tool for transforming data sources and logs into graphs.
View physical memory as files in a virtual file system for easy memory analysis and artifact access.
A free, open source collection of tools for forensic artifact and image analysis.
A Python 2.x tool for memory analysis on Mac OS X systems with support for various OS versions and memory image export capabilities.
A portable Rust-based tool for acquiring volatile memory from Linux systems without requiring prior knowledge of the target OS distribution or kernel.
A Python-based engine for automatic creation of timelines in digital forensic analysis
Web interface for the Volatility Memory Analysis framework with advanced features.
Python tool for remotely or locally dumping RAM of a Linux client for digital forensics analysis.
AMExtractor is an Android memory acquisition tool that dumps physical device memory using /dev/kmem without requiring kernel source code.
Turbinia is an open-source framework for automating the running of common forensic processing tools to help with processing evidence in the Cloud.
A collaborative forensic timeline analysis tool for organizing and analyzing data with rich annotations and comments.
Rekall is a discontinued project that aimed to improve memory analysis methodology but faced challenges due to the nature of in-memory structure and increasing security measures.
Dissect is a digital forensics & incident response framework that simplifies the analysis of forensic artefacts from various disk and file formats.