
plugxdecoder
Decodes PlugX traffic and encrypted/compressed artifacts

Decodes PlugX traffic and encrypted/compressed artifacts

All-in-One malware analysis tool.

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…


QCSuper is a tool communicating with Qualcomm-based phones and modems, allowing to capture raw 2G/3G/4G radio frames, among other things.

❄️ PcapXray - A Network Forensics Tool - To visualize a Packet Capture offline as a Network Diagram including device identification, highlight…

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata…

A tool to analyze the network flow during attack/defence Capture the Flag competitions

'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files

A tool for processing a lot of pcaps using tshark

A network packet forensics tool for SSH

NetworkAssessment: Network Compromise Assessment Tool

USB device connection forensics tool that traces physical device-to-computer relationships across local and domain networks, generating visual graphs…

Automation tool designed to simplify the analysis of PCAP (Packet Capture) files

A tool to assist with network-based hunting for GRU's Drovorub malware c2


A network sniffer that logs all DNS server replies for use in a passive DNS setup

This is the development tree. Production downloads are at: