PacketQ Logo

PacketQ

0
Free
Visit Website

PacketQ is a command line tool that allows users to run SQL queries directly on PCAP files, with output options including JSON, CSV, and XML. It features a simplistic web-server for remote file inspection and offers super-fast native decoding of PCAP files, extensible protocol decoding, support for grouping, sorting, counting, and other SQL functions, and a built-in DNS resolver function.

FEATURES

ALTERNATIVES

A multi-threaded scanner for identifying CORS flaws and misconfigurations

Unfurl is a URL analysis tool that extracts and visualizes data from URLs, breaking them down into components and presenting the information visually.

Comprehensive guide for Iptables configuration and firewall rules.

A simple honeypot that opens a listening socket and waits for connection attempts, with configurable reply and event handling

A script for extracting network metadata and fingerprints such as JA3 and HASSH from packet capture files or live network traffic.

A simple Docker-based honeypot to detect port scanning

An analyzer for parsing GQUIC traffic in Zeek, supporting versions Q039 to Q046, with a fingerprinting method named 'CYU' for detecting anomalous GQUIC traffic.

Makes output from the tcpdump program easier to read and parse.