
Dshell
Dshell is a network forensic analysis framework.
digital-forensicsdns-analysisforensics+3
5.5k

Dshell is a network forensic analysis framework.


Web-based Traffic and Cybersecurity Network Traffic Monitoring

Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.

A flow-based network monitor with Deep Packet Inspection

Bro analyzer that detects Google's QUIC protocol

Splunk app for integrating and analyzing Corelight network detection data, enabling real-time threat hunting and incident response.

Flows-first PCAP TUI (case files, gorgeous UX). Do do do do.

Zeek support for Community ID flow hashing.