Volatility alternatives

  • Autopsy Forensic Browser

  • The Autopsy Forensic Browser is a graphical interface to the digital investigation tools in The Sleuth Kit. Together, they allow you to investigate the file system and volumes of a computer.

    tags: data-recovery forensics
    platform: Mac OS X Windows Linux
  • Rekall

  • The Rekall Framework is a completely open collection of tools, implemented in Python under the Apache and GNU General Public License, for the extraction and analysis of digital artifacts computer systems.

    tags: forensics digital-forensics memory-analysis
    platform: Mac OS X Windows Linux
  • Caine

  • CAINE Computer Aided INvestigative Environment Live CD/DVD, computer forensics, digital forensics

    tags: linux-operating-systems distribution distro
    platform: Linux