Skip to content
Sections
>> Trisquel >> 套件 >> etiona >> utils >> rekall-core
etiona  ]
[ 原始碼: rekall  ]

套件: rekall-core (1.6.0+dfsg-2)

memory analysis and incident response framework

The Rekall Framework is a completely open collection of tools for the extraction and analysis of digital artifacts computer systems.

Rekall supports investigations of the following 32bit and 64bit memory images:

 - Microsoft Windows XP Service Pack 2 and 3
 - Microsoft Windows 7 Service Pack 0 and 1
 - Microsoft Windows 8 and 8.1
 - Microsoft Windows 10
 - Linux Kernels 2.6.24 to 4.4.
 - OSX 10.7-10.12.x.

Rekall also provides a complete memory sample acquisition capability for all major operating systems.

其他與 rekall-core 有關的套件

  • 依賴
  • 推薦
  • 建議
  • dep: python
    interactive high-level object-oriented language (default version)
  • dep: python-ipython (>= 5.0.0)
    Enhanced interactive Python shell (Python 2 version)
  • dep: python-rekall-core (= 1.6.0+dfsg-2)
    memory analysis and incident response framework -- core Python modules

下載 rekall-core

下載可用於所有硬體架構的
硬體架構 套件大小 安裝後大小 檔案
all 5.8 kB22 kB [文件列表]