iMISP Logo

iMISP

0
Free
Visit Website

iMISP is an Instant Messenger Honeypot designed to detect and analyze malicious activities in instant messaging platforms. It captures and logs chat conversations, files exchanged, and other interactions between the honeypot and the attacker. iMISP is a powerful tool for incident response, threat hunting, and malware analysis. It can be used to detect and analyze various types of attacks, including phishing, malware distribution, and command and control (C2) communication.

FEATURES

ALTERNATIVES

A Linux command-line tool that allows you to kill in-progress TCP connections based on a filter expression, useful for libnids-based applications that require a full TCP 3-way handshake for TCB creation.

A low-interaction honeypot for detecting and analyzing potential attacks on Android devices via ADB over TCP/IP

A tool for enumerating subdomains of a given domain

A service for better visibility on networking issues in Kubernetes clusters by detecting traffic denied by iptables.

replayproxy allows you to 're-live' a HTTP session captured in a .pcap file, parsing HTTP streams, caching them, and starting a HTTP proxy to reply to requests with matching responses.

Comprehensive guide for Iptables configuration and firewall rules.

A method for profiling SSL/TLS Clients with easy-to-produce client fingerprints.

A free, open-source network protocol analyzer for capturing and displaying packet-level data.