
sslsplit
Transparent man-in-the-middle proxy that terminates SSL/TLS connections, forges certificates on-the-fly, and logs decrypted traffic for network…

Transparent man-in-the-middle proxy that terminates SSL/TLS connections, forges certificates on-the-fly, and logs decrypted traffic for network…

Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

A Swiss army knife for your daily Linux network plumbing.

Multiplatform C++ library for high-performance network packet capture, parsing, crafting, and analysis. Supports libpcap, DPDK, AF_XDP, PF_RING, and…


A terminal UI for tshark, inspired by Wireshark

FATT /fingerprintAllTheThings - a pyshark based script for extracting network metadata and fingerprints from pcap files and live network traffic

This framework combines a set of existing open source tools into an integrated package that automates the forensics investigation process. It is able…

Containerized network traffic analysis suite ingesting PCAP, Zeek logs, and Suricata alerts for automated normalization, enrichment, and correlation…

Selective protocol extractor from PCAPs or interfaces

Wireshark's official code repository. You can keep the releases coming by donating at https://wiresharkfoundation.org/donate/.

Provides packet processing capabilities for Go

Stenographer is a packet capture solution which aims to quickly spool all packets to disk, then provide simple, fast access to subsets of those…

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata…

'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files

NetworkAssessment: Network Compromise Assessment Tool

A tool to analyze the network flow during attack/defence Capture the Flag competitions

A Zeek IPSec protocol analyzer based on Spicy.