awesome-repositories.com
المدونة
MCP
awesome-repositories.com

اكتشف أفضل مستودعات المصادر المفتوحة باستخدام بحث مدعوم بالذكاء الاصطناعي.

استكشفعمليات بحث منسقةبدائل مفتوحة المصدربرمجيات ذاتية الاستضافةالمدونةخريطة الموقع
المشروعخادم MCPحولكيفية ترتيب النتائجالصحافة
قانونيالخصوصيةالشروط
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·

7 مستودعات

Awesome GitHub RepositoriesNetwork Forensics

Tools for capturing, storing, and analyzing full network packets.

Explore 7 awesome GitHub repositories matching part of an awesome list · Network Forensics. Refine with filters or upvote what's useful.

Awesome Network Forensics GitHub Repositories

اعثر على أفضل المستودعات باستخدام الذكاء الاصطناعي.سنبحث عن أفضل المستودعات المطابقة باستخدام الذكاء الاصطناعي.
  • aol/molochالصورة الرمزية لـ aol

    aol/moloch

    7,399عرض على GitHub↗

    Moloch is a full packet capture system and network forensics platform designed for large scale network traffic recording and indexing. It functions as a distributed packet indexer that stores raw data in PCAP format for deep packet analysis and security investigations. The system distinguishes itself through a decentralized architecture that distributes capture and viewing components across multiple nodes to handle high volumes of network traffic. It utilizes a web-based management interface for browsing network sessions and provides a programmable API for exporting captured traffic and metad

    Large-scale IPv4 packet capture and indexing system.

    C
    عرض على GitHub↗7,399
  • arkime/arkimeالصورة الرمزية لـ arkime

    arkime/arkime

    7,399عرض على GitHub↗

    Arkime is a distributed packet analysis platform and full packet capture system designed for recording raw network traffic, indexing metadata, and performing network forensics. It functions as a network traffic indexer and security tool that enables the monitoring, querying, and browsing of large-scale network traffic across multi-cluster architectures. The platform distinguishes itself through its ability to manage distributed capture clusters from a centralized administrative dashboard. It integrates external data feeds with internal traffic logs to identify known threats and provides a pro

    Provides a web-based interface for querying indexed data and analyzing full network packets.

    C
    عرض على GitHub↗7,399
  • google/gopacketالصورة الرمزية لـ google

    google/gopacket

    6,781عرض على GitHub↗

    gopacket is a Go library for live packet capture and multi-layer protocol decoding. It provides a framework for parsing raw network bytes into structured protocol layers, enabling inspection and analysis of network traffic directly from interfaces or packet capture files. The library distinguishes itself through a layered protocol stack that organizes decoders as independent, composable layers, and an interface-based decoder registry that supports extensible custom protocol development. It offers zero-copy packet decoding for high-throughput parsing, stream-based TCP reassembly to reconstruct

    Analyzes captured packet data from files or live interfaces to investigate network events and security incidents.

    Go
    عرض على GitHub↗6,781
  • usarmyresearchlab/dshellالصورة الرمزية لـ USArmyResearchLab

    USArmyResearchLab/Dshell

    5,487عرض على GitHub↗

    Dshell is a network forensic analysis framework and traffic processor designed for the deep packet inspection of IPv4 and IPv6 traffic. It functions as an extensible forensic plugin system that captures, inspects, and analyzes network data to identify security anomalies and reconstruct communication streams. The system utilizes a plugin-based processing engine that allows for custom plugin development and plugin chaining. This modular architecture enables the creation of specialized analysis pipelines where network data is passed through a sequence of processing units for multi-step analysis.

    Network forensic analysis framework.

    Python
    عرض على GitHub↗5,487
  • deepfence/packetstreamerالصورة الرمزية لـ deepfence

    deepfence/PacketStreamer

    1,931عرض على GitHub↗

    :star: :star: Distributed tcpdump for cloud native environments :star: :star:

    Distributed remote packet capture tool.

    Go
    عرض على GitHub↗1,931
  • google/stenographerالصورة الرمزية لـ google

    google/stenographer

    1,796عرض على GitHub↗

    Stenographer is a packet capture solution which aims to quickly spool all packets to disk, then provide simple, fast access to subsets of those packets. Discussion/announcements at stenographer@googlegroups.com

    High-speed packet capture and spooling solution.

    Go
    عرض على GitHub↗1,796
  • simsong/tcpflowالصورة الرمزية لـ simsong

    simsong/tcpflow

    1,769عرض على GitHub↗

    TCP/IP packet demultiplexer. Download from:

    Tool for capturing and reconstructing TCP connection data.

    C++
    عرض على GitHub↗1,769
  1. Home
  2. Part of an Awesome List
  3. Databases & Data
  4. Network Forensics