Awesome CTF
Section: Networking · An open-source network security monitor.
Entry
Appears in 6 awesome lists
(formerly Bro) is an open source software platform that provides compact, high-fidelity transaction logs, file content, and fully customized output to analysts, from the smallest home office to the largest, fastest research and commercial networks. From the FAQ: "Zeek provides a comprehensive…
Section: Networking · An open-source network security monitor.
Section: Network Security Monitoring (NSM) · Powerful network analysis framework focused on security monitoring, formerly known as Bro.
Section: 网络安全监控(NSM) · 一个强大的网络分析框架,专注于安全监控,以前称为Bro
Section: Traffic Analysis/Inspection · (formerly Bro) is an open source software platform that provides compact, high-fidelity transaction logs, file content, and fully customized output to analysts, from the smallest home office to the largest, fastest research and commercial networks. From the FAQ: "Zeek provides a comprehensive…
Section: IDS / IPS / Host IDS / Host IPS · Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.
Section: Self-Hosted Network Security · Detect if you have a malware-infected computer on your network, and powerful network analysis framework and monitor.
Wireshark is a free and open-source packet analyzer. It is used for network troubleshooting, analysis, software and communications protocol development, and education. Wireshark is very similar to tcpdump, but has a graphical front-end, plus some integrated sorting and filtering options.
Snort is a free and open source network intrusion prevention system (NIPS) and network intrusion detection system (NIDS)created by Martin Roesch in 1998. Snort is now developed by Sourcefire, of which Roesch is the founder and CTO. In 2009, Snort entered InfoWorld's Open Source Hall of Fame as one…
A free, open-source network scanner used for discovering hosts, services, and vulnerabilities on computer networks through advanced port scanning and OS detection techniques.
TCP port scanner, spews SYN packets asynchronously, scanning entire Internet in under 5 minutes..
A malicious traffic detection system, utilizing publicly available (black)lists containing malicious and/or generally suspicious trails and featuring an reporting and analysis interface.
Packet capture solution which aims to quickly spool all packets to disk, then provide simple, fast access to subsets of those packets. It stores as much history as it possible, managing disk usage, and deleting when disk limits are hit. It's ideal for capturing the traffic just before and during…
Script to redirect all traffic from the machine to the Tor network.
A general purpose network security scanner with an extensible plugin system for detecting high severity RCE-like vulnerabilities with high confidence. Custom detectors for finding vulnerabilities (e.g. open APIs) can be added.