
BruteShark
Network forensic analysis tool for deep PCAP inspection, extracting passwords, authentication hashes, and network maps. Supports live capture,…

Network forensic analysis tool for deep PCAP inspection, extracting passwords, authentication hashes, and network maps. Supports live capture,…

Capture and analyze network traffic with deep packet inspection, protocol decoding across hundreds of protocols, and capture-file support for…

Extracts network metadata and fingerprints (JA3, HASSH, RDFP) from pcap files or live traffic for honeypot monitoring and forensic analysis.

Wireshark plugin that correlates network traffic with threat intelligence, asset tags, and vulnerability data to accelerate forensic analysis of PCAP…

Lua plugin to extract data from Wireshark and convert it into MISP format

A flow-based network monitor with Deep Packet Inspection

Automated wireless network forensic framework that captures traffic, analyzes for DoS, Evil Twin, and WEP Crack attacks, and extracts documented…

Analyzes pcapng packet captures and generates HTML reports for network traffic review, protocol inspection, and incident response investigations.

Network traffic analyzer and packet sniffer for deep inspection of hundreds of protocols. Supports live capture, offline analysis, and multi-format…

A Swiss army knife for your daily Linux network plumbing.

Analyzes network traffic to detect C&C servers, peer-to-peer networks, and DNS fast-flux infrastructures, cross-referencing with known malware…

Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

Burp Suite extension for importing PCAP/PCAPNG files, enabling passive scanning, inspection, and replay of HTTP traffic captured from non-proxied…

Lightweight full-packet network traffic recorder and buffer for commodity hardware, integrating with existing alert and log tools for distributed…

Bro analyzer that detects Google's QUIC protocol

Selective protocol extractor from PCAPs or interfaces

A terminal UI for tshark, inspired by Wireshark

Reconstructs TCP data streams from captured packets, storing each flow in separate files for protocol analysis, network debugging, and forensic…