squidmagic

Traffic analyzer

Analyzes web-based network traffic to detect malicious command and control servers using Squid proxy server and Spamhaus

analyze a web-based network traffic 🕶 to detect central command and control servers

GitHub

78 stars
8 watching
27 forks
Language: Python
last commit: over 6 years ago
Linked from 1 awesome list

incident-responsenetwork-trafficproxy-serversquidsquidmagic

Backlinks from these awesome lists:

Related projects:

Repository Description Stars
tomchop/malcom Analyzes network traffic to detect malware communication and behavior 1,155
michoo/pci Analyzes network traffic to investigate packet interactions and visualize connections on a graph-based platform. 90
idaholab/malcolm A powerful tool suite for analyzing and visualizing network traffic data 360
cisco/mercury A tool for analyzing and extracting metadata from network packets 444
benjeems/packetstrider Analyzes network traffic from SSH connections to detect potential security threats and reverse sessions. 253
pi-hole/ftl A lightweight, interactive API that provides access to network traffic statistics and integrates with the Pi-hole project. 1,381
eremit4/cs-discovery Detects malicious servers in network traffic by analyzing encoded byte patterns 20
mandiant/flare-fakenet-ng A tool for intercepting and redirecting network traffic to analyze malware functionality 1,803
cisagov/malcolm A network traffic analysis tool suite that accepts various data formats and provides visualization and incident response capabilities. 1,962
phaethon/kamene A tool for crafting and analyzing network packets and pcap files to support security research and testing. 868
jarryshaw/pypcapkit A Python-based comprehensive network packet analysis library 239
activecm/rita A framework for detecting malicious communication patterns in network traffic by analyzing Zeek logs. 194
sunwxg/goshark A tool for analyzing IP packets using tshark and decoding network protocols into structured data 19
ebu/smpte2110-analyzer Analyze network packets generated by the SMPTE ST 2110 specification to inspect video stream data 69
hgascon/acapulco A tool for analyzing and visualizing network traffic data using event clustering and parallel coordinates graphs. 10