| secdev/scapy |
9,725 |
|
814 |
206 |
about 2 years ago |
25 |
December 25, 2022 |
158 |
gpl-2.0 |
Python |
| Scapy: the Python-based interactive packet manipulation program & library. Supports Python 2 & Python 3. |
| bee-san/pyWhat |
6,136 |
|
0 |
0 |
over 2 years ago |
14 |
December 06, 2021 |
25 |
mit |
Python |
| 🐸 Identify anything. pyWhat easily lets you identify emails, IP addresses, and more. Feed it a .pcap file or some text and it'll tell you what it is! 🧙♀️ |
| arkime/arkime |
5,969 |
|
0 |
0 |
about 2 years ago |
0 |
|
68 |
apache-2.0 |
JavaScript |
| Arkime is an open source, large scale, full packet capturing, indexing, and database system. |
| zeek/zeek |
5,731 |
|
0 |
0 |
about 2 years ago |
0 |
|
143 |
other |
C++ |
| Zeek is a powerful network analysis framework that is much different from the typical IDS you may know. |
| OISF/suricata |
3,738 |
|
0 |
1 |
about 2 years ago |
4 |
January 31, 2023 |
82 |
gpl-2.0 |
C |
| Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine developed by the OISF and the Suricata community. |
| the-tcpdump-group/tcpdump |
2,460 |
|
0 |
0 |
about 2 years ago |
0 |
|
101 |
other |
C |
| the TCPdump network dissector |
| activecm/rita |
2,363 |
|
0 |
0 |
over 2 years ago |
45 |
December 01, 2021 |
84 |
gpl-3.0 |
Go |
| Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis. |
| cisagov/Malcolm |
1,619 |
|
0 |
0 |
about 2 years ago |
0 |
|
1 |
other |
Python |
| Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts. |
| Srinivas11789/PcapXray |
1,614 |
|
0 |
0 |
about 4 years ago |
0 |
|
13 |
gpl-2.0 |
Python |
| :snowflake: PcapXray - A Network Forensics Tool - To visualize a Packet Capture offline as a Network Diagram including device identification, highlight important communication and file extraction |
| deepfence/FlowMeter |
1,058 |
|
0 |
0 |
over 2 years ago |
0 |
|
1 |
apache-2.0 |
Go |
| ⭐ ⭐ Use ML to classify flows and packets as benign or malicious. ⭐ ⭐ |