-
A community user reported on Slack:
> trying to install brim 0.24.001 on Centos 8 and get the following conflict:
> ```
> file /usr/lib/.build-id/1d/a3a1d77c7109ce6444919f4a15e7e6c63d02fa from …
-
There are few major problems with current drakpdb-based implementation:
- it uses Rekall format that is deprecated and not really supported by recent versions of Drakvuf
- drakpdb lacks support fo…
-
On my phone, my laptop, my computer, LemnosLife VPS and OverClock3000.
https://docs.python.org/3.13/library/re.html#re.fullmatch
```python
help(re.fullmatch)
```
Output:
```
Help on fun…
-
When scanning a 24G windows lime memeory file,I can use --save-config option to create config file . The next time I scan this memory file, I can use the -c option set saved config to skip the Scanni…
-
**Describe the bug**
Running windows.handles on a memory sample that Volatility 2 supports fully causes a strange backtrace in Vol3:
```
# python3.8 vol.py -f data.lime windows.handles --pid 3704…
-
I am using Windows 10 build 19041
I read a couple issue and found that this version of windows is not officially supporter with volatility 2.6.1. I lack the ability to create a profile myself. (I can…
-
**Describe the bug**
Every plugin works just fine with the exception to "windows.netstat.NetStat" I just keep getting this error:
Unsatisfied requirement plugins.NetStat.modules:
Unable to valid…
-
**Is your feature request related to a problem? Please describe.**
A clear and concise description of what the problem is. Ex. I'm always frustrated when [...]
**Describe the solution you'd like**…
-
**Describe the bug**
I enabled Windows Sandbox feature on my Windows 11 machine to test some stuff with Atomic Red Team and afterwards capture the memory of the virtual Windows Sandbox machine to che…
-
Yarascan(windows.vadyarascan) of volatility3(beta) only shows hexdump of search string.
A sample run would look like the following:
```
>python3 vol.py -f sample.mem windows.vadyarascan.VadYa…