LiME Logo

LiME

0
Free
Visit Website

LiME (Linux Memory Extractor) is a Loadable Kernel Module (LKM) that enables volatile memory acquisition from Linux and Linux-based devices, including Android. It is the first tool to allow full memory captures on Android devices, minimizing user-kernel space interaction for more forensically sound captures. Features include full Android memory acquisition, acquisition over network interface, minimal process footprint, and hash of dumped memory. Usage involves loading the module using the insmod command with specified arguments like path, format, and optional parameters like digest and dio.

FEATURES

ALTERNATIVES

A tool for extracting files from packet capture files with ease of use and extensibility for Python developers.

A powerful tool for analyzing and visualizing system activity timelines.

Generate comprehensive reports about Windows systems with detailed system, security, networking, and USB information.

Toolkit for performing acquisitions on iOS devices with logical and filesystem acquisition support.

A tool with advanced filtering capabilities for analyzing events based on time, path, weekday, and date.

TestDisk is a free data recovery software that can recover lost partitions and undelete files from various file systems.

mac_apt is a versatile DFIR tool for processing Mac and iOS images, offering extensive artifact extraction capabilities and cross-platform support.

A library and tools to access and manipulate VMware Virtual Disk (VMDK) files.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2024 - All rights reserved