
wireshark
Capture and analyze network traffic with deep packet inspection, protocol decoding across hundreds of protocols, and capture-file support for…

Capture and analyze network traffic with deep packet inspection, protocol decoding across hundreds of protocols, and capture-file support for…

Arkime is an open source, large scale, full packet capturing, indexing, and database system.

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata…

My write-ups from CyberDefenders' Blue Team labs, solved using Wireshark. Covers TeamCity RCE (CVE-2024-27198), XSS session hijacking, and…

Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

Downloaded a packet capture (.pcapng) file from malware-traffic-analysis.net which was an example of an attempted attack against a webserver using…

PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Packetsifter…

'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files

A package for capturing and analyzing network flow data and intraflow data, for network research, forensics, and security monitoring.

This framework combines a set of existing open source tools into an integrated package that automates the forensics investigation process. It is able…