MemLabs is an educational, introductory set of CTF-styled challenges aimed at encouraging students, security researchers, and CTF players to start with Memory Forensics. The main goal of creating this repository is to provide a reliable platform for individuals to learn, practice, and enhance their skills in memory forensics through CTF-style challenges. The structure of the repository includes different levels of difficulty challenges from Beginner's Luck to The Reckoning, each designed to help users understand how to approach CTF challenges and use volatility effectively.
FEATURES
SIMILAR TOOLS
A collection of PowerShell modules for artifact gathering and reconnaissance of Windows-based endpoints.
Free software for extracting Microsoft cabinet files, supporting all features and formats of Microsoft cabinet files and Windows CE installation files.
A library to access and parse Windows XML Event Log (EVTX) format, useful for digital forensics and incident response.
An anti-forensic kill-switch tool for USB ports to shut down the computer immediately in case of unauthorized access.
Automated tool for parsing Windows registry hives and extracting valuable information for forensic analysis.
A tool for collecting and analyzing screenshots from remote desktop protocols, web applications, and VNC connections.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.