This repository contains memory forensic investigations performed using Volatility 2 and Volatility 3.
The case studies focus on identifying malicious processes, analyzing network activity, detecting rootkits, extracting forensic artifacts and investigating malware behavior from memory samples.
All memory samples used in this repository are obtained from publicly available and open-source educational resources.
- Volatility 2
- Volatility 3
- Malicious Process Analysis
- Network Activity Analysis
- User Artifact Extraction
- User-Mode Rootkit Detection
- Kernel-Mode Rootkit Detection
- Malware Memory Analysis
This repository is for educational and research purposes only. No malware samples are distributed through this repository.