Open-Awesome
CategoriesAlternativesStacksSelf-HostedExplore
Open-Awesome

© 2026 Open-Awesome. Curated for the developer elite.

TermsPrivacyAboutGitHubRSS
  1. Home
  2. Stacks
  3. libpcap
L

libpcap

Framework
35 projects73.5k total stars10.7k total forks7 languages

Open-source projects built with libpcap

There are currently 35 open-source projects built with libpcap, with a combined total of 73.5k GitHub stars. The most common language among these projects is C.

Showing 35 open-source projects

Community-curated · Updated weekly · 100% open source

Found a gem we're missing?

Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.

Submit a projectStar on GitHub
Masscan
Masscanrobertdavidgraham/masscan

An Internet-scale TCP port scanner that can scan the entire Internet in under 5 minutes using asynchronous SYN packets.

26.0k3.2kC
4 months ago
Wireshark
Wiresharkwireshark/wireshark

A network protocol analyzer that captures and interactively browses traffic running on a computer network.

9.8k2.2kC
14 hours ago
rustnet
rustnetdomcyrus/rustnet

A cross-platform terminal UI network monitor providing real-time connection tracking, deep packet inspection, and process attribution.

5.0k229Rust
1 day ago
Packet, where are you?
Packet, where are you?cilium/pwru

eBPF-based Linux kernel networking debugger for tracing and filtering network packets with fine-grained introspection.

3.8k227C
4 days ago
nethogs
nethogsraboof/nethogs

A Linux 'net top' tool that groups network bandwidth usage by process instead of protocol or subnet.

3.7k300C++
1 month ago
BruteShark
BruteSharkodedshimon/BruteShark

A Network Forensic Analysis Tool (NFAT) for deep inspection of PCAP files and live traffic, extracting credentials, building network maps, and reconstructing sessions.

3.4k357C#
3 years ago
Ettercap
EttercapEttercap/ettercap

A comprehensive suite for man-in-the-middle attacks, featuring live connection sniffing, content filtering, and protocol dissection.

2.8k537C
18 hours ago
Deepfence PacketStreamer
Deepfence PacketStreamerdeepfence/PacketStreamer

Distributed tcpdump for cloud native environments, capturing and streaming network packets from multiple hosts to a central receiver.

1.9k244Go
2 years ago
tcpflow
tcpflowsimsong/tcpflow

A TCP/IP packet demultiplexer that captures and reconstructs TCP connections into separate files for protocol analysis and forensics.

1.8k245C++
7 months ago
SharpPcap
SharpPcapchmorgan/sharppcap

A fully managed, cross-platform .NET library for capturing network packets from live devices and files.

1.5k273C#
8 days ago
sharppcap
sharppcapdotpcap/sharppcap

A fully managed, cross-platform .NET library for capturing network packets from live devices and files.

1.5k273C#
8 days ago
Joy
Joycisco/joy

A libpcap-based package for extracting and analyzing network flow data in JSON format for security research and monitoring.

1.4k336C
2 years ago
sniffglue
sniffgluekpcyrd/sniffglue

A secure, multithreaded network packet sniffer written in Rust, designed for safe operation on untrusted networks.

1.3k105Rust
4 months ago
pcap4j
pcap4jkaitoy/pcap4j

A Java library for capturing, crafting, and sending network packets via native pcap libraries.

1.2k313Java
4 years ago
pmacct
pmacctpmacct/pmacct

A lightweight suite of passive network monitoring tools supporting NetFlow, sFlow, IPFIX, libpcap, and BGP telemetry.

1.2k284C
4 days ago
sngrep
sngrepirontec/sngrep

A terminal-based SIP message flow viewer with ncurses interface for real-time VoIP debugging.

1.2k227C
15 days ago
ngrep
ngrepjpr5/ngrep

A PCAP-based network packet analyzer that applies grep-like pattern matching to packet payloads across multiple protocols.

1.0k106C
6 months ago
Netis Packet Agent
Netis Packet AgentNetis/packet-agent

A software probe for capturing and forwarding network packets in cloud, Kubernetes, and virtualized environments.

963175C
1 month ago
Vectorscan
VectorscanVectorCamp/vectorscan

A portable fork of Intel's Hyperscan, enabling high-performance regex matching on ARM, Power, and other non-x86 platforms.

75793C++
18 hours ago
ssh-honeypot
ssh-honeypotdroberson/ssh-honeypot

A low-interaction SSH honeypot that logs attacker IPs, usernames, and passwords for security intelligence.

675250C
1 year ago
PFQ
PFQpfq/PFQ

A functional network framework for Linux enabling high-performance packet capture, transmission, and in-kernel processing optimized for multi-core systems.

51971C
7 years ago
dnsmonster
dnsmonstermosajjal/dnsmonster

A high-performance passive DNS monitoring framework that captures, indexes, and analyzes DNS traffic for security and network insights.

36158Go
18 days ago
libcrafter
libcrafterpellegre/libcrafter

A high-level C++ library for crafting, decoding, and sniffing network packets with a Scapy-like interface.

31186Rust
3 days ago
CPqD
CPqDCPqD/ofsoftswitch13

An OpenFlow 1.3 compatible user-space software switch implementation for SDN research and experimentation.

307190C
3 years ago
udpreplay
udpreplayrigtorp/udpreplay

A lightweight tool for replaying UDP unicast and multicast streams from pcap files.

29083C++
2 years ago
HttpSniffer
HttpSniffercaesar0301/http-sniffer

A multi-threading tool to sniff TCP flow statistics and extract HTTP headers from live traffic or PCAP files.

19250C
7 months ago
sipgrep
sipgrepsipcapture/sipgrep

A command-line tool to sniff, capture, display, and troubleshoot SIP signaling over IP networks using regex matching.

17946C
10 days ago
pkt2flow
pkt2flowcaesar0301/pkt2flow

A cross-platform utility that classifies network packets into flows using the essential 4-tuple (src_ip, dst_ip, src_port, dst_port).

17648C++
1 year ago
clj-net-pcap
clj-net-pcapruedigergad/clj-net-pcap

A Clojure wrapper for jNetPcap that simplifies packet capturing and network traffic analysis.

6832Java
2 years ago
WiFi RID capture
WiFi RID capturesxjack/unix_rid_capture

Captures ASTM F3411 / ASD-STAN 4709-002 UAV direct remote identification signals over WiFi and Bluetooth.

6714C
3 years ago
Tapirx
Tapirxvirtalabs/tapirx

A cross-platform tool that passively discovers and identifies networked medical devices by inspecting HL7 and DICOM network traffic.

4110Go
4 months ago
Ipsumdump
Ipsumdumpkohler/ipsumdump

A command-line tool for summarizing and manipulating network packet traces from libpcap or tcpdump files.

408C++
2 years ago
rtpbreak
rtpbreakNaishy/rtpsplit

Detects, reconstructs, and analyzes RTP sessions from network traffic or pcap files, independent of signaling protocols.

2311C
9 years ago
dashbutton2mqtt
dashbutton2mqtthobbyquaker/dashbutton2mqtt

Publishes Amazon Dash button presses as MQTT messages for home automation integration.

162JavaScript
8 years ago
Tcpsplit
Tcpsplitpmcgleenon/tcpsplit

A command-line utility that splits large packet capture (pcap) files into smaller traces along TCP connection boundaries.

72C
10 years ago