
malcom
Malcom - Malware Communications Analyzer

Malcom - Malware Communications Analyzer



Collaborative forensic timeline analysis platform for ingesting, searching, and annotating event logs to support incident response and DFIR…

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

Python wrapper for tshark, allowing python packet parsing using wireshark dissectors

JA4+ is a suite of network fingerprinting standards

All-in-One malware analysis tool.

❄️ PcapXray - A Network Forensics Tool - To visualize a Packet Capture offline as a Network Diagram including device identification, highlight…

A network sniffer that logs all DNS server replies for use in a passive DNS setup

Captures raw 2G/3G/4G/5G cellular signaling from Qualcomm basebands via Diag, outputs PCAP for Wireshark, and exposes EFS/memory diagnostics.

This is the development tree. Production downloads are at:

Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

Malicious HTTP traffic explorer

A tool to analyze the network flow during attack/defence Capture the Flag competitions

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata…

Open-source network forensics toolkit for packet analysis, port scanning, host discovery, and IP geolocation. Supports ARP, ICMP, TCP, UDP pings and…

A network packet forensics tool for SSH