Open drzraf opened 5 months ago
Hello! :)
I already realized that volatility2 is deprecated. The API changes kept me from migrating this plugin as I have to rewrite the code entirely.
As for your remarks:
LiME
is only an example. You can use winpmem
or linpmem
or any other RAM dumping tool compatible with volatility.
LiME
project is archived. (tried on a recent kernel: it just hangs indefinitely). NB: I don't see why a system memory dump is necessary in the first placeSince the project is still very relevant nowadays, could one of this be realistic:
iasl
) ?