If this is your first visit, be sure to
check out the FAQ by clicking the
link above. You may have to register
before you can post: click the register link above to proceed. To start viewing messages,
select the forum that you want to visit from the selection below.
We are already using Volatility 3.1.1.0-beta.1. At least that was what is called at the time. But their old numbing doesn't seem to make sense in the context of their new numbering from the last few months. I also note that they haven't been able to get it working on Windows as a binary. "Windows binary versions will be added once a solution has been found to all pyinstaller packages being identified as malware".
But yes, we are a few months behind and it needs to be updated. It is on out to do list.
Are you going to update Volatility 3 2.0.0 for Volatility Workbench?
thank you very much for the software
Volatility 3 2.0.0 Latest
released this 16 days ago
Highlights for this release:
New plugins such as:
Windows networking plugins
Windows crashinfo and skeleton_key_check
Linux kmsg plugin
New layers: AVML and LeechCore
QEMU layer performance optimization
Improved access to Windows library symbols
Better offline and remote support
Improved documentation
Improved working with python requirements
Drop support for python 3.5
Hi David,
Volatility Workbench is sticking out as by providing Windows-versions of Volatility3 ever since. Please Keep it up! This is great work and really appreciated. One reason I choose OSF commercially.
I license OSF commercially and would love to get the current release of Volatility 3 2.4.0 with proper dependencies (including python-yara 4.x) compiled into a windows binary, As usually a memory dump is accompanied with a disk image. The Workbench is fine but sometimes it is more handsome to do stuff directly on the command line. Also for batch processing and so on. Virtualenv is not allways the best solution.
Those added modules in vol 3 2.4.0 are really important
windows.devicetree
windows.joblinks
windows.ldrmodules
windows.mbrscan
windows.mftscan
windows.sessions
I would love to get my hands on a new windows binary soon.
Kind Regards
Well V2.5.2 will be obviously the stable version until the Blackhat conference in August 2024. And since 2.5.0 in late September 2023 (5 month ago) there have been numerous stability enhancements under the hood.
But the most important new feature of V2.5.2 is:
There are 2 new FileLayers added, that make it possible to use the S3-buckets on Amazon natively and also GCS-storage in Google's cloud.
This adds remote analysis capability which come in very handy.
Comment