-
Notifications
You must be signed in to change notification settings - Fork 438
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Feature: implement DeviceTree
plugin.
#689
Feature: implement DeviceTree
plugin.
#689
Conversation
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Awesome, this looks really good, thanks! 5:) There's a few little bits and pieces that need tidying and a couple of bigger things that we might think about doing in the future, but for now if we get the small stuff cleaned up I'd be happy to merge it... 5:)
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Some additional comments, generally I think we're both in agreement on everything (and I misunderstood what was going on in one part). 5:)
Hello @ikelos, I thought about the feedback you gave me and changed the code through various experiments. If you have any comments on this PR, please feel free to leave a thread! 🙌 |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Thanks very much for all the changes, this looks good! 5:D
DeviceTree
plugin.
Description
Hello, everyone in the community! 😃
There are some plugins that have not been implemented as they are updated from Volatility 2 to 3.
After reviewing this #118, I found that DeviceTree plugin has not yet migrated to 3.
So I'm implemented (or porting) of DeviceTree plugin according to the Volatility 3 structure.
It was implemented so that the same results as Volatility 2 can be obtained by referring to the existing code.
Command
Help Command
Run Command
python3 vol.py -f case.vmem windows.devicetree
Output Example
If you are interested in or have any comments on this PR, please feel free to leave a thread! 🙌