Rekall Overview

Rekall Framework is a completely open set of tools that works on any platform that supports Python. It supports the research of the following 32-bit and 64-bit memory images. Rekall also provides a complete memory sampling capability for all major operating systems. In addition, Rekall has a complete graphical interface for writing reports and analysis of driving.


You can find more information about this toolbox in this article.

 

More.