trailofbits/mquire
Zero-dependency Linux memory forensics PoC — leverages kernel-embedded BTF and kallsyms for type-aware memory analysis without external debug info.
GitHub repository with 161 stars and 8 forks.
Language: Rust
Topics: forensics, kernel, linux, memory, rust, sql