
Qu1cksc0pe
All-in-One malware analysis tool.

All-in-One malware analysis tool.

JA4+ is a suite of network fingerprinting standards


'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files

Wireshark plugin that correlates network traffic with threat intelligence, asset tags, and vulnerability data to accelerate forensic analysis of PCAP…

Automation tool designed to simplify the analysis of PCAP (Packet Capture) files

The Multiplatform Linux Sandbox

It was developed to speed up the processes of SOC Analysts during analysis

Educational reverse engineering study of a Unity/IL2CPP Android game. Documents gateway protocol decoding, native anti-tampering SDK analysis, SSL…

DARKSURGEON is a Windows packer project to empower incident response, digital forensics, malware analysis, and network defense.

Dshell is a network forensic analysis framework.

Malware samples, analysis exercises and other interesting resources.

Multiplatform C++ library for high-performance network packet capture, parsing, crafting, and analysis. Supports libpcap, DPDK, AF_XDP, PF_RING, and…

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

QCSuper is a tool communicating with Qualcomm-based phones and modems, allowing to capture raw 2G/3G/4G radio frames, among other things.

❄️ PcapXray - A Network Forensics Tool - To visualize a Packet Capture offline as a Network Diagram including device identification, highlight…

RDP monster-in-the-middle (mitm) and library for Python with the ability to watch connections live or after the fact

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from…