awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
idaholab avatar

idaholab/MalcolmFork

0
View on GitHub↗
472 stars·73 forks·Python·7 viewsidaholab.github.io/Malcolm↗

Malcolm

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.

Features

  • Network Analysis - Analyzes full packet captures and network logs.

Star history

Star history chart for idaholab/malcolmStar history chart for idaholab/malcolm

How this analysis was created: This summary and feature list were written by an AI model that read the project's README and public documentation pages. Each feature links to the documentation it came from; stars, license and language come straight from the GitHub API. The model does not read the source code, and the analysis is refreshed when the project is re-analysed. Learn more on our About page.

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Open-source alternatives to Malcolm

Similar open-source projects, ranked by how many features they share with Malcolm.
  • zeek/zeekzeek avatar

    zeek/zeek

    7,735View on GitHub↗

    Zeek is a network analysis framework and security monitoring tool that transforms raw network packets into high-level semantic logs. It functions as an application protocol analyzer and network intrusion detection system designed to extract meaning from network traffic and monitor for malicious activity. The system focuses on archiving network activity and maintaining historical records of application-layer state for forensic investigation and auditing. It utilizes a combination of modular protocol analyzers and customizable detection policies to perform deep semantic analysis of numerous app

    C++brodfirndr
    View on GitHub↗7,735
  • mishakorzik/allhackingtoolsmishakorzik avatar

    mishakorzik/AllHackingTools

    5,186View on GitHub↗

    AllHackingTools is a security tool orchestrator and suite designed to install, update, and manage a wide array of third-party hacking and security utilities from a single command interface. It functions as a centralized hub for network analysis, open source intelligence, penetration testing, and social engineering tools. The project provides specialized frameworks for gathering open source intelligence and searching for user profiles across social platforms. It includes toolkits for network reconnaissance, vulnerability scanning, and the execution of security exploits, as well as a social eng

    Shellall-in-onebruteforcecibersecurity
    View on GitHub↗5,186
  • fireeye/flare-fakenet-ngfireeye avatar

    fireeye/flare-fakenet-ng

    2,146View on GitHub↗

    FakeNet-NG - Next Generation Dynamic Network Analysis Tool

    Python
    View on GitHub↗2,146
  • hempnall/broyarahempnall avatar

    hempnall/broyara

    33View on GitHub↗

    integrating bro into yara

    C++
    View on GitHub↗33
See all 17 alternatives to Malcolm→

Frequently asked questions

What does idaholab/malcolm do?

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.

What are the main features of idaholab/malcolm?

The main features of idaholab/malcolm are: Network Analysis.

What are some open-source alternatives to idaholab/malcolm?

Open-source alternatives to idaholab/malcolm include: zeek/zeek — Zeek is a network analysis framework and security monitoring tool that transforms raw network packets into high-level… mishakorzik/allhackingtools — AllHackingTools is a security tool orchestrator and suite designed to install, update, and manage a wide array of… fireeye/flare-fakenet-ng — FakeNet-NG - Next Generation Dynamic Network Analysis Tool. jbremer/httpreplay — Replay HTTP and HTTPS requests from a PCAP based on TLS Master Secrets. jpr5/ngrep — ngrep is like GNU grep applied to the network layer. It's a PCAP-based tool that allows you to specify an extended… hempnall/broyara — integrating bro into yara.