squidmagic

Traffic analyzer

Analyzes web-based network traffic to detect malicious command and control servers using Squid proxy server and Spamhaus

analyze a web-based network traffic 🕶 to detect central command and control servers

GitHub

78 stars
8 watching
27 forks
Language: Python
last commit: over 6 years ago
Linked from 1 awesome list

incident-responsenetwork-trafficproxy-serversquidsquidmagic

Backlinks from these awesome lists:

Related projects:

Repository Description Stars
tomchop/malcom Analyzes network traffic to detect malware communication and behavior 1,158
michoo/pci Analyzes network traffic to investigate packet interactions and visualize connections on a graph-based platform. 90
idaholab/malcolm A powerful tool suite for analyzing and visualizing network traffic data 368
cisco/mercury A tool for analyzing and extracting metadata from network packets 447
benjeems/packetstrider Analyzes network traffic from SSH connections to detect potential security threats and reverse sessions. 254
pi-hole/ftl A lightweight, interactive API that provides access to network traffic statistics and integrates with the Pi-hole project. 1,388
eremit4/cs-discovery Detects malicious servers in network traffic by analyzing encoded byte patterns 20
mandiant/flare-fakenet-ng A tool to intercept and analyze network traffic for malware analysis and testing 1,824
cisagov/malcolm A network traffic analysis tool suite that accepts various data formats and provides visualization and incident response capabilities. 2,001
phaethon/kamene A tool for crafting and analyzing network packets and pcap files to support security research and testing. 869
jarryshaw/pypcapkit A Python-based comprehensive network packet analysis library 240
activecm/rita A framework for detecting malicious communication patterns in network traffic by analyzing Zeek logs. 215
sunwxg/goshark A tool for analyzing IP packets using tshark and decoding network protocols into structured data 19
ebu/smpte2110-analyzer Analyze network packets generated by the SMPTE ST 2110 specification to inspect video stream data 71
hgascon/acapulco A tool for analyzing and visualizing network traffic data using event clustering and parallel coordinates graphs. 10