
Skadi
Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux

Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux

🐸 Identify anything. pyWhat easily lets you identify emails, IP addresses, and more. Feed it a .pcap file or some text and it'll tell you what it…

Remote live forensics and incident response framework with Python agent for collecting forensic data from endpoints, including memory, disk, and…


All-in-One malware analysis tool.

TCP/IP packet demultiplexer. Download from:

A package for capturing and analyzing network flow data and intraflow data, for network research, forensics, and security monitoring.

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from…

FATT /fingerprintAllTheThings - a pyshark based script for extracting network metadata and fingerprints from pcap files and live network traffic

The ultimate steganography and digital forensics toolkit. Hide and extract data across images, audio, video, documents, and network packets, or run…

A Windows Batch script and a Unix Bash script to comprehensively collect host forensic data during incident response.

Visualize network topologies and collect graph statistics based on pcap files

'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files

Extracts IP addresses from pcap/pcapng network traffic files and generates CSV reports with geolocation, ISP, and organizational details for each IP.

Lua plugin to extract data from Wireshark and convert it into MISP format

Open source Baltic Sea shadow fleet tracker. 1200+ vessels, live AIS, cable proximity alerts. No cloud, no subscription, runs locally

create cypher create statements for neo4j out of netstat files from multiple machines
