Showing 24 of 24 projects
A malicious traffic detection system that monitors network traffic for blacklisted threats and suspicious activities using public feeds and heuristics.
An extensible Python framework for network forensic analysis through plugin-based dissection of packet captures.
A Network Forensic Analysis Tool (NFAT) for deep inspection of PCAP files and live traffic, extracting credentials, building network maps, and reconstructing sessions.
A powerful, easily deployable network traffic analysis tool suite for PCAP files, Zeek logs, and Suricata alerts.
A Python tool that sniffs sensitive credentials and data from network interfaces or pcap files across multiple protocols.
A collection of real-world malware samples, analysis exercises, and training resources for cybersecurity education and research.
A Python tool to analyze, explore, and revive malicious HTTP traffic from PCAP files for security research.
A powerful, easily deployable network traffic analysis tool suite for PCAP files, Zeek logs, and Suricata alerts.
A command-line tool that runs SQL queries directly on PCAP files and includes a built-in web server for remote inspection.
Visualizes network topologies and communication flows from pcap files across device, IP, and TCP/UDP layers.
An open-source big data security analytics tool that analyzes network packet capture (pcap) files using Apache Pig.
A multiplatform Linux sandbox for malware traffic analysis and IOC capture using QEMU emulation.
A research project providing tools and detection rules for analyzing and simulating Quantum Insert network attacks.
A multi-threading tool to sniff TCP flow statistics and extract HTTP headers from live traffic or PCAP files.
A toolkit for analyzing and validating ST2110-compliant IP media streams from captured network packets.
A practical classroom course suite teaching cyber defense monitoring using Suricata and Arkime for threat detection and packet analysis.
A web interface for exploring Suricata EVE outputs, designed for CTF players to analyze network flows during attack-defense games.
A language server implementing the Language Server Protocol for Suricata signatures, providing syntax checking, hints, and auto-completion.
A Django-based web application for visual analysis of network traffic from PCAP files.
A repository of sample Suricata eve.json log files generated from various network pcap datasets for security analysis and learning.
A native Python implementation of p0f3 with extra packet analysis features, including OS fingerprinting and service identification from PCAP files.
Detects, reconstructs, and analyzes RTP sessions from network traffic or pcap files, independent of signaling protocols.
A Gemini CLI extension that analyzes packet captures using RAG, MCP, and custom slash commands.
A Docker-based training environment for learning Suricata network intrusion detection through hands-on PCAP replay.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.