
pastokrapacefleciks
Analyzes .pcapng files to generate HTML reports for network traffic inspection and forensic review.

Analyzes .pcapng files to generate HTML reports for network traffic inspection and forensic review.

This framework combines a set of existing open source tools into an integrated package that automates the forensics investigation process. It is able…

Selective protocol extractor from PCAPs or interfaces

This project is now part of @mitmproxy.

Dshell is a network forensic analysis framework.

A Zeek STUN protocol analyzer based on Spicy.

Arkime is an open source, large scale, full packet capturing, indexing, and database system.

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

Very fast DDoS sensor with sFlow/Netflow/IPFIX/SPAN support

The best-in-class macOS app to See every packet clearly on your Mac. Alternative to Wireshark

PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Packetsifter…

Wireshark plugin that correlates network traffic with threat intelligence, asset tags, and vulnerability data to accelerate forensic analysis of PCAP…

Offline-first network investigation and response platform for Windows. Turns a pcap or live capture into a full forensic verdict — attack story,…


Stenographer is a packet capture solution which aims to quickly spool all packets to disk, then provide simple, fast access to subsets of those…

A network packet forensics tool for SSH

This repository contains a list of new remediation scripts.

Pcap (capture file) Analysis Toolkit(v.1)