
Wireshark
Wireshark's official code repository. You can keep the releases coming by donating at https://wiresharkfoundation.org/donate/.

Wireshark's official code repository. You can keep the releases coming by donating at https://wiresharkfoundation.org/donate/.

Arkime is an open source, large scale, full packet capturing, indexing, and database system.

🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.

The best-in-class macOS app to See every packet clearly on your Mac. Alternative to Wireshark

Firmware Analysis and Comparison Tool

Free email OSINT tool, 2500+ platforms, identity clustering, breach detection. No API keys required. pip install mailaccess

Capture and analyze network traffic with deep packet inspection, protocol decoding across hundreds of protocols, and capture-file support for…

Portable Linux RAM acquisition tool for forensics and incident response, capturing LiME-compatible images with optional compression and remote…

SQL powered operating system instrumentation, monitoring, and analytics.

A Fast (and safe) parser for the Windows XML Event Log (EVTX) format

Portable Executable reversing tool with a friendly GUI

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

Forensic collection and analysis toolkit for Android and iOS devices to identify potential compromise by known spyware using public and private…

eBPF-powered network observability for Kubernetes. Indexes L4/L7 traffic with full K8s context, decrypts TLS without keys. Queryable by AI agents via…



Per-process network monitoring for your terminal with deep packet inspection. Cross-platform, sandboxed.

Python-based interactive packet manipulation library for forging, decoding, sending, capturing, and analyzing network packets across a wide range of…