
joy
A package for capturing and analyzing network flow data and intraflow data, for network research, forensics, and security monitoring.

A package for capturing and analyzing network flow data and intraflow data, for network research, forensics, and security monitoring.

A tool to assist with network-based hunting for GRU's Drovorub malware c2

Malcom - Malware Communications Analyzer

Parsing Ramnit's traffic

A Zeek based NetSupport detector. NetSupport is often abused by attackers in malware.

CVE-2017-0199 XLS --> HTA --> VBS --> STEGANOGRAPHY --> DBATLOADER/GULOADER STYLE MALWARE

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

Visualize network topologies and collect graph statistics based on pcap files

Android Connections Forensics