
flowinspect
Network traffic inspection tool that reassembles TCP/UDP flows and inspects them using regex, fuzzy string matching, shellcode detection (libemu),…

Network traffic inspection tool that reassembles TCP/UDP flows and inspects them using regex, fuzzy string matching, shellcode detection (libemu),…

This tool extracts Credit card numbers, NTLM(DCE-RPC, HTTP, SQL, LDAP, etc), Kerberos (AS-REQ Pre-Auth etype 23), HTTP Basic, SNMP, POP, SMTP, FTP,…

Network forensic analysis tool for deep PCAP inspection, extracting passwords, authentication hashes, and network maps. Supports live capture,…

Tool for solving BPF filters and crafting packets based on these.

Kernel-level USB packet capture driver and command-line tool for Windows, enabling raw USB traffic monitoring, analysis, and export to PCAP format…

'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files

A tool for processing a lot of pcaps using tshark

Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

Analyzes SSH packet captures using machine learning to predict reverse tunnels, keystrokes, data exfiltration, and authentication methods for…

A tool to analyze the network flow during attack/defence Capture the Flag competitions

PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Packetsifter…

Automation tool designed to simplify the analysis of PCAP (Packet Capture) files

Analyzes pcap files to detect DNS tunneling, SSH tunneling, TCP hijacking, and various network attacks (SYN flood, Slowloris, SMB) with…

A tool to listen on a KNX bus via TPUART and the Calimero Project suite and to dump the data from the packets into a Wireshark-Compatible file hex…

It was developed to speed up the processes of SOC Analysts during analysis