MemLabs Logo

MemLabs

0
Free
Visit Website

MemLabs is an educational, introductory set of CTF-styled challenges aimed at encouraging students, security researchers, and CTF players to start with Memory Forensics. The main goal of creating this repository is to provide a reliable platform for individuals to learn, practice, and enhance their skills in memory forensics through CTF-style challenges. The structure of the repository includes different levels of difficulty challenges from Beginner's Luck to The Reckoning, each designed to help users understand how to approach CTF challenges and use volatility effectively.

FEATURES

ALTERNATIVES

A DFVFS backed viewer project with a WxPython GUI, aiming to enhance file extraction and viewing capabilities.

NBD is a userland implementation of the Network Block Device protocol, allowing for remote access to block devices over a network.

Comprehensive digital forensics and incident response platform for law enforcement, corporate, and academic institutions.

A collection of PowerShell modules for artifact gathering and reconnaissance of Windows-based endpoints.

Easy-to-use live forensics toolbox for Linux endpoints with various capabilities such as process inspection, memory analysis, and YARA scanning.

ID-spoofing NFS client

WinSearchDBAnalyzer can parse and recover records in Windows.edb, providing detailed insights into various data types.

CyLR is a Live Response Collection tool for quickly and securely collecting forensic artifacts from hosts with NTFS file systems.