
maltrail
Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

Capture and analyze network traffic with deep packet inspection, protocol decoding across hundreds of protocols, and capture-file support for…

Open-source network IDS/IPS/NSM engine for real-time traffic inspection, intrusion detection and prevention, protocol analysis, and rule-based threat…

A terminal UI for tshark, inspired by Wireshark

A Swiss army knife for your daily Linux network plumbing.

eBPF-based packet analyzer that captures network traffic with automatic process, container, and Kubernetes pod metadata annotation, supporting…

Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

Multiplatform C++ library for high-performance network packet capture, parsing, crafting, and analysis. Supports libpcap, DPDK, AF_XDP, PF_RING, and…

A package for capturing and analyzing network flow data and intraflow data, for network research, forensics, and security monitoring.

This framework combines a set of existing open source tools into an integrated package that automates the forensics investigation process. It is able…

It was developed to speed up the processes of SOC Analysts during analysis

Selective protocol extractor from PCAPs or interfaces


❄️ PcapXray - A Network Forensics Tool - To visualize a Packet Capture offline as a Network Diagram including device identification, highlight…

Containerized network traffic analysis suite ingesting PCAP, Zeek logs, and Suricata alerts for automated normalization, enrichment, and correlation…

Provides packet processing capabilities for Go

Wireshark's official code repository. You can keep the releases coming by donating at https://wiresharkfoundation.org/donate/.