PacketQ Logo

PacketQ

0
Free
Visit Website

PacketQ is a command line tool that allows users to run SQL queries directly on PCAP files, with output options including JSON, CSV, and XML. It features a simplistic web-server for remote file inspection and offers super-fast native decoding of PCAP files, extensible protocol decoding, support for grouping, sorting, counting, and other SQL functions, and a built-in DNS resolver function.

FEATURES

ALTERNATIVES

Object scanning system with scalable and flexible architecture for intrusion detection.

Tool for setting up Glutton, a cybersecurity tool for monitoring SSH traffic.

DOS attack by sending fake BPDUs to disrupt switches' STP engines.

Automated SSRF finder with options for XSS and open redirects

A simple text viewer for Prompt(1) sessions

A module for loading Bro logs as tables in Osquery

A Burp extension to detect alias traversal via NGINX misconfiguration at scale.

A set of interrelated detection rules for improving detection and hunting visibility and context

PINNED