volafox Logo

volafox

0
Free
Visit Website

volafox, also known as 'Mac OS X Memory Analysis Toolkit', is a Python 2.x tool developed for memory analysis on Mac OS X systems. It supports a wide range of OS versions from Snow Leopard to El Capitan, and provides features such as Kernel Symbol List overlay data, memory image analysis, and memory image export using tools like rekal. The project repository can be found at: https://github.com/n0fate/volafox

FEATURES

ALTERNATIVES

usbdeath is an anti-forensic tool that manipulates udev rules for known USB devices and performs actions on unknown USB device insertion or specific USB device removal.

A network forensics toolkit that transforms network traffic data into graph-based representations for interactive analysis and visualization through a web interface.

Recover event log entries from an image by heuristically looking for record structures.

DFIR ORC Documentation provides detailed instructions for setting up the build environment and deploying the tool.

A python module for orchestrating content acquisitions and analysis via Amazon SSM.

A library to access the Windows New Technology File System (NTFS) format with read-only support for NTFS versions 3.0 and 3.1.

Windows anti-forensics USB monitoring tool with the ability to shutdown the computer upon detecting the unplugging of a specified USB device.

Automated collection tool for incident response triage in Windows systems.