
malcom
Malcom - Malware Communications Analyzer

Malcom - Malware Communications Analyzer

eBPF-based packet analyzer that captures network traffic with automatic process, container, and Kubernetes pod metadata annotation, supporting…

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from…

A Windows Batch script and a Unix Bash script to comprehensively collect host forensic data during incident response.

The Multiplatform Linux Sandbox

Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

Hands-on DFIR challenges covering digital forensics, incident response, malware analysis, and threat hunting with CTF-style flags and real-world…

The ultimate steganography and digital forensics toolkit. Hide and extract data across images, audio, video, documents, and network packets, or run…

A tool to analyze the network flow during attack/defence Capture the Flag competitions

The best-in-class macOS app to See every packet clearly on your Mac. Alternative to Wireshark

Visualize network topologies and collect graph statistics based on pcap files

Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux

Pcap (capture file) Analysis Toolkit(v.1)

'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files

Wireshark plugin that correlates network traffic with threat intelligence, asset tags, and vulnerability data to accelerate forensic analysis of PCAP…

PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Packetsifter…

NetworkAssessment: Network Compromise Assessment Tool

OpenFPC, Open Source Full Packet Capture