Skip to content

Entry

Wireshark

Appears in 20 awesome lists

Wireshark is a free and open-source packet analyzer. It is used for network troubleshooting, analysis, software and communications protocol development, and education. Wireshark is very similar to tcpdump, but has a graphical front-end, plus some integrated sorting and filtering options.

Open wireshark.org

Found in these lists

FYI

Section: Tools & Resources · Network protocol analyzer

ActiveScore 79

Awesome CTF

Section: Forensics · Used to analyze pcap or pcapng files

StaleScore 58

Awesome Cybersecurity Blue Team

Section: Network Security Monitoring (NSM) · Free and open-source packet analyzer useful for network troubleshooting or forensic netflow analysis.

StaleScore 53

Awesome Cybersecurity Blue Team - CN

Section: 网络安全监控(NSM) · 一个免费、开源的数据包分析器,广泛使用,具有较好的GUI,可用于网络故障排除或数字取证方面的网络流分析

StaleScore 47

Awesome Free Apps

Section: Network Analysis · Leading tool for capturing and analyzing network traffic. 🪟 🍎 🐧 🟢

FreshScore 89

Awesome Free Software

Section: Utilities · Packet analyzer for network troubleshooting and analysis. (GNU GPLv2)

SlowScore 57

Awesome Hacking -An Amazing Project

Section: Execution logging and tracing · A free and open-source packet analyzer

StaleScore 59

Awesome Mac

Section: Network Analysis · The world’s foremost and widely-used network protocol analyzer.

FreshScore 94

Awesome Malware Analysis

Section: Network · The network traffic analysis tool.

StaleScore 58

Awesome Networking

Section: Packet capture and analysis · The most popular free and open source network protocol analyzer.

ActiveScore 71

Awesome Penetration Testing

Section: Protocol Analyzers and Sniffers · Widely-used graphical, cross-platform network protocol analyzer.

ActiveScore 83

Awesome Qt

Section: Software that Uses Qt · package: - The most popular packet-sniffer out there. You are going to use this for good and not evil, right?

ArchivedScore 50

Awesome Security

Section: Sniffer · Wireshark is a free and open-source packet analyzer. It is used for network troubleshooting, analysis, software and communications protocol development, and education. Wireshark is very similar to tcpdump, but has a graphical front-end, plus some integrated sorting and filtering options.

SlowScore 70

Awesome Sysadmin

Section: Troubleshooting · The world's foremost network protocol analyzer. (Source Code) GPL-2.0 C

FreshScore 92

Awesome Vehicle Security

Section: Applications · WireShark can be used for reversing CAN communications.

ActiveScore 75

Awesome Video

Section: Protocols & Transport · A network protocol analyzer that can be used to debug streaming video at the packet level. Wireshark supports protocols like RTMP, HLS (HTTP), and MPEG-TS, allowing developers to inspect segment requests, manifest files, and timing to diagnose streaming issues.

ActiveScore 77

Awesome Windows

Section: Networking · Network protocol analyzer.

FreshScore 85

Security lists for SOC/DFIR detections

Section: General

FreshScore 84

Table of Contents

Section: Troubleshooting · The world's foremost network protocol analyzer.

SlowScore 61

Table of Contents

Section: Networking Tools & Concepts · is a very popular network protocol analyzer that is commonly used for network troubleshooting, analysis, and communications protocol development. Learn more about the other useful Wireshark Tools available.

SlowScore 51

Snort

Snort is a free and open source network intrusion prevention system (NIPS) and network intrusion detection system (NIDS)created by Martin Roesch in 1998. Snort is now developed by Sourcefire, of which Roesch is the founder and CTO. In 2009, Snort entered InfoWorld's Open Source Hall of Fame as one…

In 9 listsDetails

Nmap

A free, open-source network scanner used for discovering hosts, services, and vulnerabilities on computer networks through advanced port scanning and OS detection techniques.

In 10 listsDetails

Volatility

Python based memory extraction and analysis framework.

In 8 listsDetails

Fibratus

Fibratus is a tool for exploration and tracing of the Windows kernel. It is able to capture the most of the Windows kernel activity - process/thread creation and termination, file system I/O, registry, network activity, DLL loading/unloading and much more. Fibratus has a very simple CLI which…

In 8 listsDetails

Burp Suite

Burp Suite is an integrated platform for performing security testing of web applications by portswigger.

In 7 listsDetails

Zeek

(formerly Bro) is an open source software platform that provides compact, high-fidelity transaction logs, file content, and fully customized output to analysts, from the smallest home office to the largest, fastest research and commercial networks. From the FAQ: "Zeek provides a comprehensive…

In 6 listsDetails

Kali Linux

Kali Linux is a Debian-derived Linux distribution designed for digital forensics and penetration testing. Kali Linux is preinstalled with numerous penetration-testing programs, including nmap (a port scanner), Wireshark (a packet analyzer), John the Ripper (a password cracker), and Aircrack-ng (a…

In 7 listsDetails

Maltrail

A malicious traffic detection system, utilizing publicly available (black)lists containing malicious and/or generally suspicious trails and featuring an reporting and analysis interface.

In 5 listsDetails