slackbuilds/system/volatility3
Barry J. Grundy 3f08b36d66
system/volatility3: Updated for version 2.11.0.
Signed-off-by: Willy Sudiarto Raharjo <willysr@slackbuilds.org>
2025-04-04 19:25:53 +07:00
..
README system/volatility3: Updated for version 2.11.0. 2025-04-04 19:25:53 +07:00
slack-desc
volatility3.SlackBuild system/volatility3: Updated for version 2.11.0. 2025-04-04 19:25:53 +07:00
volatility3.info system/volatility3: Updated for version 2.11.0. 2025-04-04 19:25:53 +07:00

README

Volatility Framework - Volatile memory extraction utility framework.

Volatility is the world's most widely used framework for extracting 
digit artifacts from volatile memory (RAM) samples. The extraction 
techniques are performed completely independent of the system being 
investigated but offer visibility into the runtime state of the system.
The framework is intended to introduce people to the techniques and 
complexities associated with extracting digital artifacts from volatile
memory samples and provide a platform for further work into this 
exciting area of research.

In 2019, the Volatility Foundation released a complete rewrite of the
framework, Volatility3. 

The following are optional dependancies:
  - capstone
  - jsonschema
  - s3fs-fuse