caesar0301 / pcapdpi
Using nDPI/openDPI to detect flow protocols from a PCAP file or live NIC. This program was modified from example in nDPI and I added a periodically cleaning of flow tree to save memory.
☆23Updated 8 years ago
Alternatives and similar repositories for pcapdpi:
Users that are interested in pcapdpi are comparing it to the libraries listed below
- Set of scripts to index PCAP files and retrieve packets☆14Updated 9 years ago
- A tool to generate log messages related to interfaces, neighbor cache (ARP,NDP), IP address, routing, FIB rules, traffic control.☆32Updated 4 months ago
- Plugin providing AF_XDP support for Bro.☆14Updated 3 years ago
- Meer (GPLv2) is a dedicated "spooler" for the Suricata & Sagan EVE output formats.☆23Updated 4 years ago
- Application and service identification rules for Suricata☆18Updated 2 years ago
- Network timing evaluation used to detect beacons, works with argus flow as the source☆20Updated 8 years ago
- Ipsumdump and other programs for command-line network trace manipulation.☆37Updated last year
- Snort/Suricata DAQ module with DPDK patch☆11Updated 10 months ago
- Net2PCAP is a simple network-to-pcap capture file for Linux. Its goal is to be as simple as possible to be used in hostile environments☆39Updated 11 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- OpenFlow Honeypot☆23Updated 12 years ago
- BGP Route Leaks Detection☆70Updated 6 years ago
- Ccollection of Linux loadable kernel modules aimed to logs any user action☆25Updated 5 years ago
- iknowthis Linux SystemCall Fuzzer☆20Updated 5 years ago
- CVE Builder script that generates STIX formatted Exploit Target objects☆18Updated 8 years ago
- Opensvp is a security tool implementing "attacks" to be able to test the resistance of firewall to protocol level attack.☆48Updated 8 years ago
- automatic enumeration and maintenance of Suricata monitoring interfaces☆11Updated 5 years ago
- intel amt honeypot☆18Updated 7 years ago
- Scripts to detect Fast-Flux and DGA using DNS query responses☆42Updated 7 years ago
- D4 core software (server and sample sensor client)☆42Updated last year
- Prototype system to monitor BGP routes and alert when anomalies are identified☆14Updated 6 years ago
- Mass deploy and update Suricata IDPS using Ansible IT automation platform☆9Updated 10 years ago
- Get a list of installed software in a safe manner☆11Updated 7 years ago
- Passive DHCP analyzer with OS fingerprinting on the LAN through DHCP☆13Updated 7 years ago
- A Docker container for Moloch based on minimal Debian☆26Updated 9 years ago
- Extending OVS with DPI functionalities☆16Updated 9 years ago
- Tools for programmatic parsing of packet captures using Wireshark functionality☆93Updated 11 years ago
- Script for pcap modification, reconstruction and anonymization☆18Updated 3 months ago
- The ModSecurity Pcap Connector☆26Updated 9 years ago
- GSAudit at Symantec, ExeAudit at RIM, RECX Binary Assurance for Windows at Recx etc. - core library now WinBinaryAudit☆24Updated 9 years ago