Loading...

A command-line tool that allows SQL queries to be executed directly on PCAP files for network traffic analysis with support for multiple output formats.

A command-line tool that allows SQL queries to be executed directly on PCAP files for network traffic analysis with support for multiple output formats.
PacketQ is a command-line tool that enables users to execute SQL queries directly on PCAP (packet capture) files for network traffic analysis. The tool provides native decoding capabilities for PCAP files, allowing analysts to query network data using standard SQL syntax. Users can perform various database operations including grouping, sorting, counting, and filtering on captured network packets. PacketQ supports multiple output formats including JSON, CSV, and XML, making it compatible with different analysis workflows and reporting requirements. The tool features extensible protocol decoding, enabling support for various network protocols beyond basic packet structures. A built-in DNS resolver function assists with hostname resolution during analysis. The tool also includes a web server component that allows remote inspection of PCAP files through a browser interface. PacketQ is designed for network security professionals, forensic analysts, and researchers who need to perform detailed analysis of network traffic captured in PCAP format using familiar SQL query syntax.
Common questions about PacketQ including features, pricing, alternatives, and user reviews.
PacketQ is A command-line tool that allows SQL queries to be executed directly on PCAP files for network traffic analysis with support for multiple output formats. It is a Security Operations solution designed to help security teams with Packet Analysis, PCAP, SQL.
Automated network packet recording and breach investigation tool for IR teams.
A script for extracting network metadata and fingerprints such as JA3 and HASSH from packet capture files or live network traffic.
pcapfex is a forensic tool that extracts files from packet capture data by analyzing network traffic and identifying embedded file content.