awesome-repositories.com
博客
MCP
awesome-repositories.com

通过 AI 驱动的搜索,发现最优秀的开源仓库。

探索精选搜索开源替代品自托管软件博客网站地图
项目MCP 服务器关于排名机制媒体报道
法律隐私政策服务条款
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·

18 个仓库

Awesome GitHub RepositoriesNetwork Analysis

Tools for capturing, monitoring, and analyzing network traffic.

Explore 18 awesome GitHub repositories matching part of an awesome list · Network Analysis. Refine with filters or upvote what's useful.

Awesome Network Analysis GitHub Repositories

用 AI 发现最棒的仓库。我们将通过 AI 为您搜索最匹配的仓库。
  • stamparm/maltrailstamparm 的头像

    stamparm/maltrail

    8,498在 GitHub 上查看↗

    Maltrail is a malicious traffic detection system used for network intrusion detection. It consists of a network intrusion sensor for monitoring interfaces, a threat intelligence aggregator for syncing blacklists, and a detection engine that identifies security threats through signature matching and heuristic attack patterns. The system distinguishes itself through a distributed sensor architecture that collects traffic data from multiple remote probes and forwards events to a central analysis server. It employs heuristic behavioral analysis to identify unknown threats, such as port scanning o

    Detects malicious traffic using blacklists and behavioral analysis.

    Pythonattack-detectionintrusion-detectionmalware
    在 GitHub 上查看↗8,498
  • zeek/zeekzeek 的头像

    zeek/zeek

    7,735在 GitHub 上查看↗

    Zeek is a network analysis framework and security monitoring tool that transforms raw network packets into high-level semantic logs. It functions as an application protocol analyzer and network intrusion detection system designed to extract meaning from network traffic and monitor for malicious activity. The system focuses on archiving network activity and maintaining historical records of application-layer state for forensic investigation and auditing. It utilizes a combination of modular protocol analyzers and customizable detection policies to perform deep semantic analysis of numerous app

    Provides a comprehensive framework for capturing, monitoring, and analyzing network traffic.

    C++brodfirndr
    在 GitHub 上查看↗7,735
  • aol/molochaol 的头像

    aol/moloch

    7,399在 GitHub 上查看↗

    Moloch is a full packet capture system and network forensics platform designed for large scale network traffic recording and indexing. It functions as a distributed packet indexer that stores raw data in PCAP format for deep packet analysis and security investigations. The system distinguishes itself through a decentralized architecture that distributes capture and viewing components across multiple nodes to handle high volumes of network traffic. It utilizes a web-based management interface for browsing network sessions and provides a programmable API for exporting captured traffic and metad

    Indexes and stores large-scale IPv4 traffic.

    C
    在 GitHub 上查看↗7,399
  • mishakorzik/allhackingtoolsmishakorzik 的头像

    mishakorzik/AllHackingTools

    5,186在 GitHub 上查看↗

    AllHackingTools is a security tool orchestrator and suite designed to install, update, and manage a wide array of third-party hacking and security utilities from a single command interface. It functions as a centralized hub for network analysis, open source intelligence, penetration testing, and social engineering tools. The project provides specialized frameworks for gathering open source intelligence and searching for user profiles across social platforms. It includes toolkits for network reconnaissance, vulnerability scanning, and the execution of security exploits, as well as a social eng

    Provides a toolkit for sniffing network traffic, scanning open ports, and performing denial-of-service attacks.

    Shellall-in-onebruteforcecibersecurity
    在 GitHub 上查看↗5,186
  • fireeye/flare-fakenet-ngfireeye 的头像

    fireeye/flare-fakenet-ng

    2,146在 GitHub 上查看↗

    FakeNet-NG - Next Generation Dynamic Network Analysis Tool

    Simulates network services for dynamic analysis.

    Python
    在 GitHub 上查看↗2,146
  • tomchop/malcomtomchop 的头像

    tomchop/malcom

    1,170在 GitHub 上查看↗

    Malcom - Malware Communications Analyzer

    Analyzes malware communication patterns.

    Python
    在 GitHub 上查看↗1,170
  • jpr5/ngrepjpr5 的头像

    jpr5/ngrep

    1,014在 GitHub 上查看↗

    ngrep is like GNU grep applied to the network layer. It's a PCAP-based tool that allows you to specify an extended regular or hexadecimal expression to match against data payloads of packets. It understands many kinds of protocols, including IPv4/6, TCP, UDP, ICMPv4/6, IGMP and Raw, across a wide variety of interface types, and understands BPF filter logic in the same fashion as more common packet sniffing tools, such as tcpdump and snoop.

    Searches network traffic using grep-like syntax.

    Cgreppingsniffer
    在 GitHub 上查看↗1,014
  • lmco/laikabosslmco 的头像

    lmco/laikaboss

    749在 GitHub 上查看↗

    Laika BOSS: Object Scanning System

    Analyzes files and network traffic for intrusion detection.

    Python
    在 GitHub 上查看↗749
  • omriher/captipperomriher 的头像

    omriher/CapTipper

    723在 GitHub 上查看↗

    Malicious HTTP traffic explorer

    Explores malicious HTTP traffic and extracts files.

    Python
    在 GitHub 上查看↗723
  • mitrecnd/chopshopMITRECND 的头像

    MITRECND/chopshop

    496在 GitHub 上查看↗

    Protocol Analysis/Decoder Framework

    Decodes and analyzes network protocols.

    Python
    在 GitHub 上查看↗496
  • idaholab/malcolmidaholab 的头像

    idaholab/Malcolm

    472在 GitHub 上查看↗

    Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.

    Analyzes full packet captures and network logs.

    Python
    在 GitHub 上查看↗472
  • mateuszk87/pcapvizmateuszk87 的头像

    mateuszk87/PcapViz

    360在 GitHub 上查看↗

    Visualize network topologies and collect graph statistics based on pcap files

    Visualizes network topology and traffic flows.

    Python
    在 GitHub 上查看↗360
  • pjlantz/halepjlantz 的头像

    pjlantz/Hale

    202在 GitHub 上查看↗

    Botnet command & control monitor

    Monitors botnet command and control activity.

    Python
    在 GitHub 上查看↗202
  • jbremer/httpreplayjbremer 的头像

    jbremer/httpreplay

    97在 GitHub 上查看↗

    Replay HTTP and HTTPS requests from a PCAP based on TLS Master Secrets.

    Parses and replays PCAP files including TLS streams.

    Python
    在 GitHub 上查看↗97
  • ch3k1/squidmagicch3k1 的头像

    ch3k1/squidmagic

    81在 GitHub 上查看↗

    analyze a web-based network traffic 🕶 to detect central command and control servers

    Detects C&C servers in web traffic via proxy logs.

    Python
    在 GitHub 上查看↗81
  • ramadhanamizudin/python-icap-yaraRamadhanAmizudin 的头像

    RamadhanAmizudin/python-icap-yara

    58在 GitHub 上查看↗

    An ICAP Server with yara scanner for URL and content.

    Scans web content via ICAP using Yara.

    Python
    在 GitHub 上查看↗58
  • hempnall/broyarahempnall 的头像

    hempnall/broyara

    33在 GitHub 上查看↗

    integrating bro into yara

    Applies Yara rules to network traffic via Bro.

    C++
    在 GitHub 上查看↗33
  • security-cheatsheet/wireshark-cheatsheetS

    security-cheatsheet/wireshark-cheatsheet

    0在 GitHub 上查看↗

    A reference guide for using network protocol analysis software.

    在 GitHub 上查看↗0
  1. Home
  2. Part of an Awesome List
  3. Security & Privacy
  4. Network Analysis