Volatility Framework - Volatile memory extraction utility framework.
Volatility is the world's most widely used framework for extracting
digit artifacts from volatile memory (RAM) samples. The extraction
techniques are performed completely independent of the system being
investigated but offer visibility into the runtime state of the system.
The framework is intended to introduce people to the techniques and
complexities associated with extracting digital artifacts from volatile
memory samples and provide a platform for further work into this
exciting area of research.
In 2019, the Volatility Foundation released a complete rewrite of the
framework, Volatility3.
The following are optional dependancies:
- capstone
- jsonschema
- s3fs-fuse
This requires: python3-pycrypto, python3-setuptools-opt, python3-yara, python3-pycryptodomex, pefile
Maintained by: Barry J. Grundy
Keywords: memory,forensics,ram
ChangeLog: volatility3
Homepage:
https://volatilityfoundation.org/
Download SlackBuild:
volatility3.tar.gz
volatility3.tar.gz.asc (FAQ)
(the SlackBuild does not include the source)
Individual Files: |
README |
slack-desc |
volatility3.SlackBuild |
volatility3.info |
© 2006-2025 SlackBuilds.org Project. All rights reserved.
Slackware® is a registered trademark of
Patrick Volkerding
Linux® is a registered trademark of
Linus Torvalds