Skip to content
KitploitKITPLOIT
StrumentiExploitsBlog
Log in
Invia
StrumentiExploitsBlog
Invia

Strumenti di Hacking, PenTest e Cybersecurity per il tuo Arsenale di Sicurezza!

Kitploit è una directory di strumenti di hacking, cybersecurity e pentesting. Scopri gli ultimi aggiornamenti dei progetti per trovare vulnerabilità, analizzare sistemi, automatizzare i test e rafforzare la tua sicurezza.

FeedContattoPrivacy© 2026 Kitploit

Directory degli strumenti

Categorie

Vedi tutte le categorie
Loading categories
zeek-spicy-ospf — Un analizzatore di pacchetti OSPF per Zeek basato su Spicy. | Kitploit
Strumenti/GitHubGitHub/corelight/zeek-spicy-ospf
Sniffing e Analisi dei PacchettiMappatura della ReteNetwork ForensicsSicurezza di ReteRilevamento di Anomalie
GitHubcorelight/zeek-spicy-ospf

zeek-spicy-ospf

Un analizzatore di pacchetti OSPF per Zeek basato su Spicy.

Vedi Repository
83181 anno faNon ancora revisionato

Più Popolari

Vedi tutti →

Scopri gli strumenti più utilizzati dalla nostra community.

Esplora tutti gli strumenti

Sfoglia la nostra collezione di strumenti

Vedi tutti gli strumenti →
Condividi

zeek-spicy-ospf

Questo è un analizzatore di pacchetti OSPF v2 e v3 basato su Spicy per Zeek. Devi installare Spicy per usare questo pacchetto.

Link:

  • Logica originale importata da https://github.com/s-wells/spicy_parsers/tree/main/ospf, con il permesso dell'autore.
  • https://datatracker.ietf.org/doc/html/rfc2328
  • https://datatracker.ietf.org/doc/html/rfc2740
  • https://datatracker.ietf.org/doc/html/rfc5340
  • https://datatracker.ietf.org/doc/html/rfc4813#page-2
  • https://wiki.wireshark.org/OSPF

Fonti dei PCAP di test:

  • https://wiki.wireshark.org/SampleCaptures
    • https://wiki.wireshark.org/SampleCaptures?action=AttachFile&do=get&target=ospf.cap
  • https://packetlife.net/captures/protocol/ospf/
    • https://packetlife.net/media/captures/OSPF_LSA_types.cap
    • https://packetlife.net/media/captures/OSPFv3_broadcast_adjacency.cap
    • https://packetlife.net/media/captures/OSPFv3_with_AH.cap

Esempi di log```

#separator \x09 #set_separator , #empty_field (empty) #unset_field - #path ospf #open 2021-11-23-07-32-16 #fields ts ip_src ip_dst ospf_type version router_id area_id interface_id netmask desig_router backup_router neighbors lsa_type link_state_id advert_router routers link_id link_data link_type neighbor_router_id metrics fwd_addrs route_tags neighbor_interface_id prefix metric dest_router_id link_prefixes intra_prefixes #types time addr addr string count addr addr count addr addr addr vector[addr] string addr addr vector[addr] addr addr string addr vector[count] vector[addr] vector[count] count subnet count addr set[subnet] set[subnet] 1220202735.459206 fe80::1 ff02::5 Hello 3 1.1.1.1 0.0.0.1 5 - 0.0.0.0 0.0.0.0 (empty) - - - - - - - - - - - - - - - - - 1220202740.303003 fe80::2 ff02::5 Hello 3 2.2.2.2 0.0.0.1 5 - 0.0.0.0 0.0.0.0 (empty) - - - - - - - - - - - - - - - - - 1220202745.479174 fe80::1 ff02::5 Hello 3 1.1.1.1 0.0.0.1 5 - 0.0.0.0 0.0.0.0 2.2.2.2 - - - - - - - - - - - - - - - - - 1220202750.294469 fe80::2 ff02::5 Hello 3 2.2.2.2 0.0.0.1 5 - 0.0.0.0 0.0.0.0 1.1.1.1 - - - - - - - - - - - - - - - - - 1220202755.486054 fe80::1 ff02::5 Hello 3 1.1.1.1 0.0.0.1 5 - 0.0.0.0 0.0.0.0 2.2.2.2 - - - - - - - - - - - - - - - - - 1220202760.293859 fe80::2 ff02::5 Hello 3 2.2.2.2 0.0.0.1 5 - 0.0.0.0 0.0.0.0 1.1.1.1 - - - - - - - - - - - - - - - - - 1220202765.457555 fe80::1 ff02::5 Hello 3 1.1.1.1 0.0.0.1 5 - 2.2.2.2 2.2.2.2 2.2.2.2 - - - - - - - - - - - - - - - - - 1220202770.289278 fe80::2 ff02::5 Hello 3 2.2.2.2 0.0.0.1 5 - 0.0.0.0 0.0.0.0 1.1.1.1 - - - - - - - - - - - - - - - - - 1220202775.477004 fe80::1 ff02::5 Hello 3 1.1.1.1 0.0.0.1 5 - 2.2.2.2 2.2.2.2 2.2.2.2 - - - - - - - - - - - - - - - - - 1220202780.292824 fe80::2 ff02::5 Hello 3 2.2.2.2 0.0.0.1 5 - 2.2.2.2 1.1.1.1 1.1.1.1 - - - - - - - - - - - - - - - - - 1220202780.312726 fe80::1 fe80::2 Link State Update 3 1.1.1.1 0.0.0.1 - 0.0.0.0 - - - Network 0.0.0.5 2.2.2.2 2.2.2.2,1.1.1.1 - - - - - - - - - - - - - 1220202780.312726 fe80::1 fe80::2 Link State Update 3 1.1.1.1 0.0.0.1 - - - - - IA Prefix 0.0.0.4 2.2.2.2 - - - - - - - - - 2001:db8:0:3::/64 74 - - - 1220202780.312726 fe80::1 fe80::2 Link State Update 3 1.1.1.1 0.0.0.1 - - - - - IA Prefix 0.0.0.3 2.2.2.2 - - - - - - - - - 2001:db8:0:4::/64 84 - - - 1220202780.312726 fe80::1 fe80::2 Link State Update 3 1.1.1.1 0.0.0.1 - - - - - IA Prefix 0.0.0.2 2.2.2.2 - - - - - - - - - 2001:db8:0:34::/64 74 - - - 1220202780.312726 fe80::1 fe80::2 Link State Update 3 1.1.1.1 0.0.0.1 - - - - - IA Prefix 0.0.0.1 2.2.2.2 - - - - - - - - - 2001:db8::/64 64 - - - 1220202780.312726 fe80::1 fe80::2 Link State Update 3 1.1.1.1 0.0.0.1 - - - - - IA Prefix 0.0.0.8 1.1.1.1 - - - - - - - - - 2001:db8:0:3::/64 74 - - - 1220202780.312726 fe80::1 fe80::2 Link State Update 3 1.1.1.1 0.0.0.1 - - - - - IA Prefix 0.0.0.7 1.1.1.1 - - - - - - - - - 2001:db8:0:4::/64 84 - - - 1220202780.312726 fe80::1 fe80::2 Link State Update 3 1.1.1.1 0.0.0.1 - - - - - IA Prefix 0.0.0.6 1.1.1.1 - - - - - - - - - 2001:db8:0:34::/64 74 - - - 1220202780.312726 fe80::1 fe80::2 Link State Update 3 1.1.1.1 0.0.0.1 - - - - - IA Prefix 0.0.0.5 1.1.1.1 - - - - - - - - - 2001:db8::/64 64 - - - 1220202780.312726 fe80::1 fe80::2 Link State Update 3 1.1.1.1 0.0.0.1 - - - - - Link 0.0.0.5 1.1.1.1 - - - - - - - - - - - - 2001:db8:0:12::/64 - 1220202780.312726 fe80::1 fe80::2 Link State Update 3 1.1.1.1 0.0.0.1 - - - - - IntraA Prefix 0.0.20.0 2.2.2.2 - - - - - - - - - - - - - 2001:db8:0:12::/64 1220202780.312726 fe80::1 fe80::2 Link State Update 3 1.1.1.1 0.0.0.1 - - - - - IntraA Prefix 0.0.0.0 1.1.1.1 - - - - - - - - - - - - - 2001:db8:0:12::/64 1220202780.316781 fe80::2 fe80::1 Link State Update 3 2.2.2.2 0.0.0.1 - - - - - IA Prefix 0.0.0.8 2.2.2.2 - - - - - - - - - 2001:db8:0:3::/64 74 - - -

Scarica lo strumento