
arkime
Arkime is an open source, large scale, full packet capturing, indexing, and database system.
digital-forensicsforensicsinformation-gathering+5
7.4k

Arkime is an open source, large scale, full packet capturing, indexing, and database system.

Open-source network forensics toolkit for packet analysis, port scanning, host discovery, and IP geolocation. Supports ARP, ICMP, TCP, UDP pings and…

Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.

OpenFPC, Open Source Full Packet Capture

This framework combines a set of existing open source tools into an integrated package that automates the forensics investigation process. It is able…