
etl2pcapng
Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata…


Rust tool to detect cell site simulators on an orbic mobile hotspot


BPF-based Linux IPC tracer for pipes, signals, Unix sockets, loopback, and pseudoterminals with metadata and content capture, filtering, and JSON…

Online Reverse Enginerring viewer

A tool to analyze the network flow during attack/defence Capture the Flag competitions

Extracts and downloads Snap Map media by coordinates for OSINT, forensic analysis, and research. Supports metadata logging and bulk download.

PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Packetsifter…

OSINT tool researched and designed to hunt down IG handles

Automation tool designed to simplify the analysis of PCAP (Packet Capture) files

Quickly Extracts IP's, Email Addresses, Hashes, Files, Credit Cards, Social Security Numbers and a lot More From Text

Hash database builder and reverse lookup tool — SHA256, RIPEMD160, Keccak256, BLAKE3 and more

Bash-based Linux persistence detection tool for DFIR investigations. Scans 15+ persistence mechanisms (systemd, cron, kernel modules, SSH,…

Local Linux binary analysis tool. Zero cloud. Zero root. See exactly what a binary does before you run it.

MasterParser is a powerful DFIR tool designed for analyzing and parsing Linux logs