The 2016 Volatility Plugin Contest is now live!
by Volatility | Apr 4, 2016 | contest, volatility, volatility foundation
This is a quick update to announce that the 2016 Volatility Plugin contest is now live and accepting submissions until October 1st. Winners of this year’s contest will be receiving over $2,000 in cash prizes as well as plenty of Volatility swag...PlugX: Memory Forensics Lifecycle with Volatility
by Volatility | Nov 6, 2015 | anti-forensics, code injection, contest, impscan, malfind, osdfcon, plugx, rootkits, volatility
At OSDFCon last week, we discussed a case study showing how we identified manipulated memory artifacts in an infected environment. We were then able to rapidly introduce new capabilities to Volatility that could be used proactively in other environments. The...Results from the 2015 Volatility Plugin Contest are in!
by Volatility | Oct 29, 2015 | contest, forensics, linux, malware, volatility, volatility foundation, windows
The competition this year was fierce! We received 12 plugins to the contest. Similar to last year, ranking the submissions was one of the hardest things we’ve had to do. Each plugin is unique in its own way and introduces a capability to open source memory...Recovering TeamViewer (and other) Credentials from RAM with EditBox
by Volatility | Aug 1, 2015 | contest, forensics, passwords, volatility, windows
I recently stumbled upon the TeamViewer-dumper-in-CPP project, which shows just how easy it is to recover TeamViewer IDs, passwords, and account information from a running TV instance by enumerating child windows (on a live machine). The method is based on sending a...The 2015 Volatility Plugin contest is now live!
by Volatility | Jul 16, 2015 | contest, volatility, volatility foundation
This is a quick update to announce that the 2015 Volatility Plugin contest is now live and accepting submissions until October 1st. Winners of this year’s contest will be receiving over $2,000 in cash prizes as well as plenty of Volatility swag (t-shirts,...
You must be logged in to post a comment.