
securityonion
Open-source security monitoring platform for threat hunting, intrusion detection, log management, incident response, and endpoint visibility with…

Open-source security monitoring platform for threat hunting, intrusion detection, log management, incident response, and endpoint visibility with…

A flow-based network monitor with Deep Packet Inspection

Corelight@Home script

Zeek support for Community ID flow hashing.

Bro analyzer that detects Google's QUIC protocol

A Zeek OpenVPN protocol analyzer, based on Spicy.

Single-page web dashboard for Meshtastic mesh networks with live network mapping, packet analysis, chat, sensor telemetry, and topology…

Downloaded a packet capture (.pcapng) file from malware-traffic-analysis.net which was an example of an attempted attack against a webserver using…

An event-driven network monitoring platform that performs live packet capture (Npcap), low-latency traffic analytics, and unsupervised threat…

Per-process network monitoring for your terminal with deep packet inspection. Cross-platform, sandboxed.

Command-line packet analyzer for network monitoring and data acquisition, capturing and displaying network traffic for troubleshooting and security…

Command-line packet analyzer for network monitoring and data acquisition, capturing and displaying network traffic for troubleshooting and security…

Command-line packet analyzer for network monitoring and data acquisition, capturing and displaying network traffic for troubleshooting and security…

Dshell is a network forensic analysis framework.

Arkime is an open source, large scale, full packet capturing, indexing, and database system.

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata…

Very fast DDoS sensor with sFlow/Netflow/IPFIX/SPAN support

A wireshark plugin to instrument ETW