
etl2pcapng
Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

A tool to analyze the network flow during attack/defence Capture the Flag competitions

A tool to assist with network-based hunting for GRU's Drovorub malware c2

❄️ PcapXray - A Network Forensics Tool - To visualize a Packet Capture offline as a Network Diagram including device identification, highlight…

PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Packetsifter…

A network sniffer that logs all DNS server replies for use in a passive DNS setup

Malicious HTTP traffic explorer

Extracts IP addresses from pcap/pcapng network traffic files and generates CSV reports with geolocation, ISP, and organizational details for each IP.

Automation tool designed to simplify the analysis of PCAP (Packet Capture) files

Malcom - Malware Communications Analyzer

NetworkAssessment: Network Compromise Assessment Tool

A network packet forensics tool for SSH

QCSuper is a tool communicating with Qualcomm-based phones and modems, allowing to capture raw 2G/3G/4G radio frames, among other things.

All-in-One malware analysis tool.

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

Collaborative forensic timeline analysis platform for ingesting, searching, and annotating event logs to support incident response and DFIR…

A tool for processing a lot of pcaps using tshark

It was developed to speed up the processes of SOC Analysts during analysis