Forensic Software & Applications
Explore supported forensic software tools, usage guides, tips & tricks, and direct download links.
Ram Capture
Belkasoft • Windows
A lightweight, free utility to acquire (dump) the full contents of RAM on a running Windows system.
Volatility
Volatility Foundation (Open Source) • Windows / Linux / macOS (Python)
The most widely used open-source memory analysis framework for extracting processes, network connections, and malware artifacts from RAM dumps.
WinPmem
Velocidex / Rekall (Open Source) • Windows
Open-source driver and utility for forensically acquiring Windows physical memory.