Dshell Logo

Dshell

0
Free
Visit Website

An extensible network forensic analysis framework that enables rapid development of plugins to support the dissection of network packet captures. Key features include deep packet analysis using specialized plugins, robust stream reassembly, IPv4 and IPv6 support, multiple user-selectable output formats, chainable plugins, parallel processing option, and the ability to create custom output handlers. It also provides guides such as the Dshell User Guide for installation and analysis, and the Dshell Developer Guide for plugin development. Requirements include Linux (developed on Ubuntu 20.04 LTS), Python 3 (developed with Python 3.8.10), pypacker, pcapy-ng, pyOpenSSL, and MaxMind GeoIP2 for geoip2.

FEATURES

ALTERNATIVES

A command-line utility to show and change EXIF information in JPEG files

wxHexEditor is a free hex editor / disk editor with various data manipulation operations and visualization functionalities.

A Cross-Platform Forensic Framework for Google Chrome that allows investigation of history, downloads, bookmarks, cookies, and provides a full report.

Autopsy is a GUI-based digital forensics platform for analyzing hard drives and smart phones, with a plug-in architecture for custom modules.

A command-line utility for extracting human-readable text from binary files.

Browse and analyze iPhone/iPad backups with detailed file properties and various viewers.

Python script to parse macOS MRU plist files into human-friendly format

Dissect is a digital forensics & incident response framework that simplifies the analysis of forensic artefacts from various disk and file formats.

PINNED