
termshark
A terminal UI for tshark, inspired by Wireshark

A terminal UI for tshark, inspired by Wireshark

Multiplatform C++ library for high-performance network packet capture, parsing, crafting, and analysis. Supports libpcap, DPDK, AF_XDP, PF_RING, and…

Automated cross-platform sandbox that detonates suspicious files in isolated VMs/emulators, captures network and memory artifacts, and creates LLM…

This is the development tree. Production downloads are at:

JA4+ is a suite of network fingerprinting standards

Free hands-on digital forensics labs for students and faculty

Collaborative forensic timeline analysis platform for ingesting, searching, and annotating event logs to support incident response and DFIR…

Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux

Digital Forensics Guide. Learn all about Digital Forensics, Computer Forensics, Mobile device Forensics, Network Forensics, and Database Forensics.

QCSuper is a tool communicating with Qualcomm-based phones and modems, allowing to capture raw 2G/3G/4G radio frames, among other things.

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

All-in-One malware analysis tool.

Breakdown of a c2-network of chinese beamers - SilentSDK-Analysis

Android Connections Forensics

Collection of forensic tools

Educational reverse engineering study of a Unity/IL2CPP Android game. Documents gateway protocol decoding, native anti-tampering SDK analysis, SSL…
