
netsniff-ng
A Swiss army knife for your daily Linux network plumbing.

A Swiss army knife for your daily Linux network plumbing.

Multiplatform C++ library for high-performance network packet capture, parsing, crafting, and analysis. Supports libpcap, DPDK, AF_XDP, PF_RING, and…

Offline AI Security Assistant for Air-Gapped Pentesting

Capture and analyze network traffic with deep packet inspection, protocol decoding across hundreds of protocols, and capture-file support for…

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

Indicators of Compromise and hunting guidance for CVE-2026-88771, an unauthenticated command injection in Citrix NetScaler ADC and Gateway, covering…

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Arkime is an open source, large scale, full packet capturing, indexing, and database system.


PowerShell script that monitors Windows DNS traffic via pktmon to detect poisoning, spoofing, rogue resolver responses, and gateway MAC changes,…

Standalone Windows VM malware sandbox running capemon, with GUI triage viewer, YARA signatures, IOC extraction, network analysis, and…

Python-based interactive packet manipulation library for forging, decoding, sending, capturing, and analyzing network packets across a wide range of…


Wireshark's official code repository. You can keep the releases coming by donating at https://wiresharkfoundation.org/donate/.

A Zeek OSPF packet analyzer based on Spicy.

RDP monster-in-the-middle (mitm) and library for Python with the ability to watch connections live or after the fact

A network sniffer that logs all DNS server replies for use in a passive DNS setup

It was developed to speed up the processes of SOC Analysts during analysis