Orochi Logo

Orochi

0
Free
Visit Website

Orochi is an open source framework for collaborative forensic memory dump analysis. Using Orochi, you and your collaborators can easily organize your memory dumps and analyze them all at the same time. Orochi architecture uses Volatility 3, saves Volatility results in ElasticSearch, distributes loads among nodes using Dask, uses Django as frontend, uses Postgresql to save users and analysis metadata such as status and errors, uses MailHog to manage the users registration emails, and uses Redis for caching.

FEATURES

ALTERNATIVES

MalConfScan is a Volatility plugin for extracting configuration data of known malware and analyzing memory images.

A recognition framework for identifying products, services, operating systems, and hardware by matching fingerprints against network probes.

A cybersecurity tool for collecting and analyzing forensic artifacts on live systems.

A python module for orchestrating content acquisitions and analysis via Amazon SSM.

View physical memory as files in a virtual file system for easy memory analysis and artifact access.

A command line utility for managing volume shadow copies with capabilities for evasion, persistence, and file extraction.

TestDisk is a free data recovery software that can recover lost partitions and undelete files from various file systems.

A digital forensic tool for creating forensic images of computer hard drives and analyzing digital evidence.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2024 - All rights reserved