
IpGeo
Extracts IP addresses from pcap/pcapng network traffic files and generates CSV reports with geolocation, ISP, and organizational details for each IP.

Extracts IP addresses from pcap/pcapng network traffic files and generates CSV reports with geolocation, ISP, and organizational details for each IP.

A network packet forensics tool for SSH

All-in-One malware analysis tool.

Malicious HTTP traffic explorer

Python wrapper for tshark, allowing python packet parsing using wireshark dissectors

Automation tool designed to simplify the analysis of PCAP (Packet Capture) files

It was developed to speed up the processes of SOC Analysts during analysis

A tool to assist with network-based hunting for GRU's Drovorub malware c2

USB device connection forensics tool that traces physical device-to-computer relationships across local and domain networks, generating visual graphs…

Open-source network forensics toolkit for packet analysis, port scanning, host discovery, and IP geolocation. Supports ARP, ICMP, TCP, UDP pings and…

'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files

Decodes PlugX traffic and encrypted/compressed artifacts