
pcapfex
'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files

'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files

USB device connection forensics tool that traces physical device-to-computer relationships across local and domain networks, generating visual graphs…

A network packet forensics tool for SSH

Open-source network forensics toolkit for packet analysis, port scanning, host discovery, and IP geolocation. Supports ARP, ICMP, TCP, UDP pings and…


IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

A network sniffer that logs all DNS server replies for use in a passive DNS setup

Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Packetsifter…

JA4+ is a suite of network fingerprinting standards