Volatility (software)

Volatility is an open-source memory forensics framework for incident response and malware analysis.

It is written in Python and supports Microsoft Windows, Mac OS X, and Linux (as of version 2.5[1]).

Volatility was created by Aaron Walters, drawing on academic research he did in memory forensics.

[2][3] Volatility supports investigations of the following memory images:[4] Windows: Mac OSX: Linux: Volatility supports a variety of sample file formats and the ability to convert between these formats: