LiME Logo

LiME

0
Free
Visit Website

LiME (Linux Memory Extractor) is a Loadable Kernel Module (LKM) that enables volatile memory acquisition from Linux and Linux-based devices, including Android. It is the first tool to allow full memory captures on Android devices, minimizing user-kernel space interaction for more forensically sound captures. Features include full Android memory acquisition, acquisition over network interface, minimal process footprint, and hash of dumped memory. Usage involves loading the module using the insmod command with specified arguments like path, format, and optional parameters like digest and dio.

FEATURES

ALTERNATIVES

A software that collects forensic artifacts on systems for forensic investigations.

Educational CTF-styled challenges for Memory Forensics.

Web interface for the Volatility Memory Forensics Framework

A utility for recovering deleted files from ext3 or ext4 partitions.

Documentation project for Digital Forensics Artifact Repository

Python tool for remotely or locally dumping RAM of a Linux client for digital forensics analysis.

A PowerShell-based incident response and live forensic data acquisition tool for Windows hosts.

A suite of console tools for working with timestamps in Windows with 100-nanosecond precision.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2024 - All rights reserved