OROCHI 2.3.0
- Removed elasticsearch
- Add clamav volume to keep antivirus updated
- Recompile rules via admin command
- Add experimental support for ARM64
- Manage BodyFile file in timeliner plugin
- export/import [#1102]
- signal for dump/result changes are very verbose [#1074]
- replace drf & co. with django-ninja [#1073]
- Add Two-Factor Authentication [#1099]
- Admin: Assign multiple dumps to user [#1082]
- Multi-arch build and images [#1098]
- Custom logo in the login page [#1083]
OROCHI 2.2.0 [2024/03/26]
- Upload ntoskrnl.exe and generate symbol [#1020]
- evaluate possibility to switch from daphne to uvicorn for asgi [#982]
- Improve path flexibility for local import [#451]
- uv for installing requirements [#1030]
- Read only users for educational. [#947]
- Add use case example with API. [#248]
- put custom plugins under volatility3 /plugins/ [#1068]
- Improve tree rendered plugins
- Execute Regipy plugins on windows images
OROCHI 2.1.1 [2024/02/13]
OROCHI 2.1.0 [2024/02/12]
- add possibility to download all symbols from a given ISF URL [#1007]
- organize memory dumps in folders [#1006]
- show plugins description with mouse over text [#1000]
- Add comment to dump [#988]
- Add download button for uploaded dumps [#983]
- Store exctracted dump info in elastic [#983]
- sort & filter on uploaded dumps [#968]
- Run plugin on multiple images [#951]
- Ldap support [#948]
- Symbols management [#918]
- Custom Symbol Table Files [#695]
- BUG: if docker fails while plugin is running it'll remain running forever [#81]
OROCHI 2.0.1 [2024/01/18]
OROCHI 2.0.0 [2024/01/09]
OROCHI 1.3.1 [2022/01/17]
OROCHI 1.3.0 [2021/10/02]
OROCHI 1.2.0 [2021/03/22]
- Yara management
- Symbols support check for linux/mac
- Symbols download helper for missing ones
- Improved dask logging
- Added Bookmarks
- Added MISP export
- Clear cache when worker start (useful in swarm mode)
- Added page autorefresh control
OROCHI 1.1.0 [2020/10/29]
- API: dump workflow can be done from api
- Volatility: support for new file interface
OROCHI 1.0.0 [2020/09/25]
- execute Volatility 3 plugins and show results in table
- plugins parameters support
- custom template for timeliner, pstree
- compare multiple plugin results in tabular format
- compare 2 plugin results in json diff
- automatic scan dump files with clamav and virustotal
- automatic parsing of hives with regipy