HaE is a network traffic analysis tool designed to extract, classify, and highlight specific data fragments within network messages and HTTP traffic. It functions as an HTTP data extractor and traffic content filter, utilizing a network metadata aggregator to centralize highlighted data fragments and annotations for analysis.
The tool identifies high-value network packets by mapping classification results to visual color markers and employs a modular classification system to isolate data fragments from binary or text streams. It distinguishes the severity of matched data by piping extracted content to external command line tools for independent validation.
The project provides capabilities for HTTP protocol inspection via multi-engine regular expression matching and aggregates security metadata into a centralized view for querying. It further supports packet data classification and vulnerability research workflows by filtering network traffic based on severity levels.