Tags: PCAP

ngrep strives to provide most of GNU grep's common features, applying them to the network layer. ngrep is a pcap-aware tool that will allow you to specify extended regular or hexadecimal expressions to match against data payloads of packets. It currently ...

VendorJordan Ritter
Pricing ModelOpen Source
Modified

Moloch is an open source, large scale IPv4 (IPv6 soon) packet capturing (PCAP), indexing and database system. A simple web interface is provided for PCAP browsing, searching, and exporting. APIs are exposed that allow PCAP data and JSON-formatted session ...

VendorAOL
Pricing ModelOpen Source
Modified

An extensible network forensic analysis framework. Enables rapid development of plugins to support the dissection of network packet captures. Key features:Robust stream reassemblyIPv4 and IPv6 supportCustom output handlersChainable decoders

VendorUS Army Research Lab
Pricing ModelOpen Source
Modified
LogRhythm Network Monitoring and Forensics

Evidence of intruders and insider threats lies within network communications. Detect network-based threats with real-time network monitoring and big data analytics. Expedite investigations by giving your incident responders access to rich network forensic ...

VendorLogRhythm
Pricing ModelCommercial
Modified
LogRhythm Network Monitor Freemium

Transform your physical or virtual system into a network forensics sensor with extensive corresponding metadata, full packet capture, and customizable advanced correlation. With Network Monitor Freemium, you’ll quickly identify emerging threats on your n ...

VendorLogRhythm
Pricing ModelFreeware
Modified

© Computer Network Defence Limited 2019