Donghyun Kim
aa597505de
Merge branch 'fix/ethread' of https://github.com/Digitalisx/volatility3 into fix/ethread
2022-05-02 10:34:13 +09:00
Donghyun Kim
51b9019601
Bump: patch version 2.1.1
2022-05-02 10:34:04 +09:00
Donghyun Kim and GitHub
d3ed864870
Merge branch 'volatilityfoundation:develop' into fix/ethread
2022-05-02 00:34:42 +09:00
Donghyun Kim
78eb31014b
Fix: get owning process method from _ETHREAD
2022-05-02 00:00:33 +09:00
Mike Auty
818002aba4
Codebase: Fix LGTM issues
2022-04-30 15:13:34 +01:00
ikelos and GitHub
48c1533e89
Merge pull request #600 from gcmoreira/linux_pslist_pstree_improvements
...
Linux PSList and PSTree plugins improvements
2022-04-29 00:53:39 +01:00
Gustavo Moreira
7b30d46908
Merge remote-tracking branch 'upstream/develop' into linux_pslist_pstree_improvements
2022-04-29 07:03:44 +10:00
Gustavo Moreira
9aba96a197
Remove unused import module
2022-04-29 06:46:58 +10:00
Gustavo Moreira
e1b8a0b5cc
container_of() is no longer needed here
2022-04-29 06:42:37 +10:00
Andrew Case
3175e25420
Remove the inheritance from pslist
2022-04-28 16:11:51 +00:00
Andrew Case
b43d61ca03
Address feedback from ikelos
2022-04-28 15:42:10 +00:00
Mike Auty
5f87964916
Linux: Make sure the pslist offset column says that it's virtual
2022-04-28 15:41:29 +01:00
ikelos and GitHub
f8bdac06a2
Merge pull request #654 from cpuu/develop
...
Add offset information in pslist plugin for Linux
2022-04-28 15:39:59 +01:00
Gustavo Moreira
192759b5d5
Updated to use the new task::get_threads
2022-04-28 10:17:39 +10:00
Gustavo Moreira
0a3c629782
Updated to use task's is_thread_group_leader function
2022-04-28 10:14:49 +10:00
Gustavo Moreira
ed5d373771
Merge remote-tracking branch 'upstream/develop' into linux_pslist_pstree_improvements
2022-04-28 09:49:17 +10:00
ikelos and GitHub
8ac2b6ac89
Merge pull request #722 from digitalisx/patch-1
...
Fix typo for `API_CHANGES`
2022-04-28 00:34:27 +01:00
Donghyun Kim and GitHub
a236bdd600
Fix typo for API_CHANGES.md
2022-04-28 08:26:52 +09:00
Gustavo Moreira
73a42577d7
VERSION_PATCH has to be reset after VERSION_MINOR was increased.
2022-04-28 09:24:19 +10:00
Mike Auty
0dc0b8ca40
Core: Bump the API correctly for an addition (to 2.1.0)
2022-04-28 00:12:41 +01:00
Gustavo Moreira
b18d6cc037
Merge branch 'mountinfo' of https://github.com/gcmoreira/volatility3 into mountinfo
2022-04-28 08:58:26 +10:00
Gustavo Moreira
c6fbb9ce14
Restoring framework minor version to meet the mountinfo plugin see f23b288ffc
2022-04-28 08:58:05 +10:00
gcmoreira and GitHub
5cc110417c
Merge branch 'volatilityfoundation:develop' into mountinfo
2022-04-28 08:52:49 +10:00
Gustavo Moreira
e5494ce8c9
Temporarely setting interface minor version to zero to allow to merge the upstream latest changes
2022-04-28 08:52:25 +10:00
Gustavo Moreira
a59de1b918
Updated to resolve merge conflict
2022-04-28 08:13:24 +10:00
Gustavo Moreira
5679135f1a
The exception message is not accurate
...
In the hypothetical case that the framework has a lower version than the module requirement, the message would be, for instance:
'Framework interface version 2 is an older revision than the required version 2.2'
instead of:
'Framework interface version 2.1 is an older revision than the required version 2.2'
See https://github.com/volatilityfoundation/volatility3/pull/593#discussion_r769238045
2022-04-28 08:12:06 +10:00
Mike Auty
4e2dd7b24f
Core: Bump patch number for additive change to API
2022-04-27 22:49:05 +01:00
ikelos and GitHub
719ba97c1c
Merge pull request #667 from samuelzurowski/develop
...
task_struct get all threads from the parent task.
2022-04-27 22:36:48 +01:00
ikelos and GitHub
296f132a8b
Merge pull request #720 from volatilityfoundation/issues/issue719
...
Symbols: Catch bad JSON files without metadata
2022-04-27 22:21:47 +01:00
Mike Auty
1154a2a9f5
Symbols: Catch bad JSON files without metadata
...
Fixes #719
2022-04-27 22:20:08 +01:00
Paul Kermann
a8d70c0657
fix typo
2022-04-26 10:11:12 +03:00
Paul Kermann
c8ab4eb814
if not table name is present table name is an empty string
2022-04-25 11:25:45 +03:00
Paul Kermann
7308f4af0c
minor improvments
2022-04-25 11:21:05 +03:00
Paul Kermann
0057f81269
log which symbol does not exist
2022-04-25 09:27:54 +03:00
Paul Kermann
bc04d22a1b
remove unused line
2022-04-24 16:42:25 +03:00
Paul Kermann
72ebf11fd3
support CallbackListHead when CmpCallBackVector not present
2022-04-24 15:13:55 +03:00
ikelos and GitHub
c40e088370
Merge pull request #706 from volatilityfoundation/issue_668_windows_freed_big_pools
...
refs #668 handle windows freed big pools more accurately
2022-04-20 19:27:51 +01:00
iMHLv2
3e70030d17
refs #668 by convention, use show-free instead of show_free
2022-04-20 13:22:18 -05:00
iMHLv2
fd81dba420
refs #668 bump the minor version and not the revision for an additive change
2022-04-20 13:21:43 -05:00
ikelos and GitHub
fc2c19bd36
Merge pull request #700 from volatilityfoundation/feature/better-error-messages
...
Configuration: Change unsatisfied response for Modules
2022-04-15 10:25:02 +01:00
Mike Auty
0673282539
Configuration: Change unsatisfied response for Modules
2022-04-10 23:36:34 +01:00
Tejas
215a434789
Update alias
...
vol3 to python3 vol.py
2022-04-06 21:13:16 +05:30
Tejas
39db890ebd
Fix code block syntax highlight
2022-04-06 21:10:41 +05:30
Tejas
bbffe9f620
Windows page added and few commands in example1
2022-04-06 21:08:07 +05:30
TEJENDRA SARADHI and GitHub
ada212da92
lime to LiME
...
Fix inconsistency
2022-04-03 06:13:53 +05:30
Tejas
20f1fc39f2
Example 1 Added
2022-04-02 18:46:16 +05:30
Tejas
b6830a1f31
Additional context for proceudre to create symbol
2022-04-02 17:38:46 +05:30
Tejas
f4e1533628
Order changed
2022-04-02 17:28:36 +05:30
Tejas
0d4c4b5808
Making changes as per review
2022-03-30 08:38:06 +05:30
Tejas
7ac6a60ff9
Updated linux page similar to vol2 wiki
2022-03-30 00:05:08 +05:30