applications/forensics tools

avml - AVML - Acquire Volatile Memory for Linux

License: MIT
AVML is an X86_64 userland volatile memory acquisition tool written in Rust, intended to be deployed as a static binary.
AVML can be used to acquire memory without knowing the target OS distribution or kernel a priori. No on-target compilation or fingerprinting is needed.

 * Save recorded images to external locations via Azure Blob Store or HTTP PUT
 * Automatic Retry (in case of network connection issues) with exponential backoff for uploading to Azure Blob Store
 * Optional page level compression using Snappy.
 * Uses LiME output format (when not using compression).

Memory Sources
 * /dev/crash
 * /proc/kcore
 * /dev/mem


avml-0.2.1-1.fc31.x86_64 [1.8 MiB] Changelog by Lawrence R. Rogers (2020-12-01):
* Release 0.2.1-1
	Version 0.2.1
	Initial release

Listing created by Repoview-0.6.6-4.el7