0x4D31 / quick
QUICk - a go library based on gopacket for analyzing QUIC CHLO messages
☆22Updated 4 years ago
Alternatives and similar repositories for quick:
Users that are interested in quick are comparing it to the libraries listed below
- Go implementation of the Community ID flow hashing standard☆20Updated last week
- Extract TLS certificates from pcap files or network interfaces, fingerprint TLS client/server interactions with ja3/ja3s☆37Updated 5 years ago
- Accurate, modular, scalable PCAP manipulation tool written in Go.☆87Updated 11 months ago
- Growing collection of Spicy-based protocol and file analyzers for Zeek☆31Updated 7 months ago
- Freki is a tool to manipulate packets in usermode using NFQUEUE and golang.☆58Updated 2 years ago
- ssh key exchange layer for scapy☆13Updated 10 years ago
- IP ASN History to find ASN announcing an IP and the closest prefix announcing it at a specific date☆91Updated 6 months ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆69Updated 11 months ago
- Simple packet dissector that detects anomalous DNP3 traffic by analysing its parameters☆15Updated 9 years ago
- Network Tools☆32Updated last year
- A tool to generate log messages related to interfaces, neighbor cache (ARP,NDP), IP address, routing, FIB rules, traffic control.☆32Updated 6 months ago
- Automatically enumerate and fingerprint SD-WAN nodes on the internet☆50Updated 3 years ago
- Application and service identification rules for Suricata☆18Updated 2 years ago
- fast, extensible, versatile event router for Suricata's EVE-JSON format☆52Updated last week
- A fast parser for DNS pcap data.☆70Updated 8 years ago
- WireGuard client for PacketFence ZTNA☆10Updated 4 years ago
- D4 core software (server and sample sensor client)☆42Updated last year
- Plugin providing AF_XDP support for Bro.☆14Updated 3 years ago
- tshark + ELK analytics virtual machine☆67Updated 2 months ago
- Encryption Abstraction Layer and Utilities for ratnet☆18Updated 11 months ago
- A python library to extract TCP sessions from PCAPs.☆23Updated 4 years ago
- Python framework for manipulating bulk WHOIS data from RIRs☆21Updated 3 years ago
- A proof of concept implementation of the Siemens S7 protocol analyser for the Bro IDS.☆16Updated 8 years ago
- GQUIC Protocol Analyzer for Zeek (Bro) Network Security Monitor☆76Updated last year
- A Zeek package for the passive detection of "Ripple20" vulnerabilities in the Treck TCP/IP stack.☆33Updated 2 years ago
- Extracts SNIs from a pcap and generates output usable in `etc/hosts` file and Burp config for proxying non-proxy-aware thick clients usin…☆11Updated 4 years ago
- teler Resource Collections☆36Updated this week
- Meer (GPLv2) is a dedicated "spooler" for the Suricata & Sagan EVE output formats.☆23Updated 4 years ago
- This is the C version of the StratosphereLinuxIPS. It is mainly used for integration with Snort and other IDSs.☆12Updated 8 years ago
- A dsniff project using bro☆10Updated 9 years ago