On Mon, May 11, 2009 at 9:32 PM, Brendan Dolan-Gavitt <bdolangavitt@wesleyan.edu> wrote:
I don't think there's been a drop in development activity. It's been a while since our last release, but a lot of activity has been taking place in the world of Volatility plugins. Andreas Schuster has recently released several new plugins that can find some less well-known artifacts of malware, and Jesse Kornblum has released a Volatility plugin to search memory for TrueCrypt passphrases.I am also a little concerned about what appears to me to be a drop in development activity around Volatility. Is Mandiant Memoryze going to take over the top slot? Right now, I see Mandiant Memoryze as third best behind HBGary and Volatility, but Volatility can't stand still.
I've also released a set of plugins for examining registry data, and shown how to integrate with other popular tools like RegRipper. I'm also working on some plugins that let you look at the state of on-screen graphical elements like windows, buttons, etc.
For example, does anyone know if there any plans to provide functionaility similar to HBGary's new Digital DNA in Volatility?
I don't have any plans to do it myself, but Volatility would provide an excellent platform to anyone who wanted to build it :)