Maloney is a framework to support security analysts in the phase detection and analysis of the incident life cycle. The software was initiated as a term project and refined in a bachelor thesis.
Following are the main features of the Maloney:
- Automation of the analysis
- Support of disk images larger than 100 GB
- Fault tolerance - restart after crash
- Plug-in architecture
- Customizable reports, plug-ins and queries
- Categorization of the extracted data into known good, known bad and unkown files.
- Bachlor thesis publication Malware Hunting