Dshell

Network analyzer

A network forensic analysis framework for dissecting network packet captures

Dshell is a network forensic analysis framework.

GitHub

5k stars
589 watching
1k forks
Language: Python
last commit: 7 months ago
Linked from 3 awesome lists


Backlinks from these awesome lists:

Related projects:

Repository Description Stars
johnlatwc/pypowershellxray Decodes and analyzes encoded PowerShell scripts to identify potential shellcode and reverse-engineered APIs. 215
jarryshaw/pypcapkit A Python-based comprehensive network packet analysis library 240
rshipp/python-dshield Provides an interface to retrieve real-time information on internet connectivity and security issues 29
anssi-fr/dfir4vsphere A PowerShell module for collecting logs and forensics data from VMware vSphere environments. 143
srinivas11789/pcapxray A tool to visualize network traffic and extract information from packet captures 1,699
vp777/metahttp Automates scanning of HTTP resources in a target network using XML External Entity (XXE) attacks 37
esc4icescesc/skanuvaty A fast and concurrent DNS/network scanner that identifies subdomains and their corresponding IPs. 890
hashlookup/hashlookup-forensic-analyser Analyze digital evidence by searching for files against a large public hash database and generating reports on findings. 126
projectdiscovery/dnsx A tool for querying and manipulating DNS records 2,210
simsong/tcpflow A tool for capturing and analyzing network data in TCP connections 1,702
dhoelzer/showmethepackets Tools and resources for network monitoring and analysis used in the SANS SEC503 course 214
tecknicaltom/dsniff A collection of network auditing and penetration testing tools that sniff various protocols to reveal security vulnerabilities. 191
zerbea/hcxdumptool A tool to capture and analyze packets from WLAN devices. 1,853
defparam/smuggler An HTTP Request Smuggling / Desync testing tool written in Python 3 1,840
securityjoes/forensicminer Automates evidence collection and analysis from Windows machines using PowerShell. 149