diff --git a/README.md b/README.md index d7e6a03..979995d 100644 --- a/README.md +++ b/README.md @@ -364,6 +364,8 @@ the [browser malware](#browser-malware) section.* forked from Volatility in 2013. * [TotalRecall](https://github.com/sketchymoose/TotalRecall) - Script based on Volatility for automating various malware analysis tasks. +* [VolDiff](https://github.com/aim4r/VolDiff) - Run Volatility on memory + images before and after malware execution, and report changes. * [Volatility](https://github.com/volatilityfoundation/volatility) - Advanced memory forensics framework. * [WinDbg](https://msdn.microsoft.com/en-us/windows/hardware/hh852365) - Live