
caronte
A tool to analyze the network flow during attack/defence Capture the Flag competitions

A tool to analyze the network flow during attack/defence Capture the Flag competitions

A network packet forensics tool for SSH

PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Packetsifter…

Sniffs outbound traffic for suspicious, beacon-like callbacks, because if it keeps coming back on schedule, it's probably not breakfast.

Selective protocol extractor from PCAPs or interfaces

Offline-first network investigation and response platform for Windows. Turns a pcap or live capture into a full forensic verdict — attack story,…

Arkime is an open source, large scale, full packet capturing, indexing, and database system.

This tool extracts Credit card numbers, NTLM(DCE-RPC, HTTP, SQL, LDAP, etc), Kerberos (AS-REQ Pre-Auth etype 23), HTTP Basic, SNMP, POP, SMTP, FTP,…

Utility that converts an .etl file containing a Windows network packet capture into .pcapng format.

NTLMRawUnhide.py is a Python3 script designed to parse network packet capture files and extract NTLMv2 hashes in a crackable format. The following…

The best-in-class macOS app to See every packet clearly on your Mac. Alternative to Wireshark

Pcap (capture file) Analysis Toolkit(v.1)

OpenFPC, Open Source Full Packet Capture

Spip network sensor written in Go

A tool to listen on a KNX bus via TPUART and the Calimero Project suite and to dump the data from the packets into a Wireshark-Compatible file hex…

A Zeek STUN protocol analyzer based on Spicy.