diff options
Diffstat (limited to 'system/volatility/README')
-rw-r--r-- | system/volatility/README | 11 |
1 files changed, 11 insertions, 0 deletions
diff --git a/system/volatility/README b/system/volatility/README new file mode 100644 index 0000000000000..f193110dfb8c4 --- /dev/null +++ b/system/volatility/README @@ -0,0 +1,11 @@ +Volatility Framework - Volatile memory extraction utility framework. + +The Volatility Framework is a completely open collection of tools, +implemented in Python under the GNU General Public License, for the +extraction of digital artifacts from volatile memory (RAM) samples. +The extraction techniques are performed completely independent of the +system being investigated but offer visibilty into the runtime state +of the system. The framework is intended to introduce people to the +techniques and complexities associated with extracting digital artifacts +from volatile memory samples and provide a platform for further work into +this exciting area of research. |