34 results for “topic:dns-analysis”
Open-source security research tool for identifying origin IP exposure of websites protected by Cloudflare and similar reverse proxy services.
PolarDNS is a specialized authoritative DNS server suitable for penetration testing and vulnerability research.
DNSWatch - DNS Traffic Sniffer and Analyzer
Tools, libraries and applications to analyze network measurements and detect interference.
Some tutorials for Raspberry PI
WebForensicAnalyzer is an advanced all-in-one tool for web reconnaissance, digital forensics, OSINT, and cybersecurity professionals. It automates deep website analysis—leveraging Shodan, Nmap, and more—to detect vulnerabilities, extract data, and deliver structured forensic results
This Python script extracts TCP streams from a Packet Capture (PCAP) file by filtering DNS queries for a specified "bad" domain.
The Network Traffic Analyzer is a Python script designed for capturing and analyzing network traffic, focusing primarily on DNS traffic. This tool provides users with the capability to monitor network activity in real-time and extract relevant information from captured packets.
🌐 Network Information Toolkit: Your all-in-one Python solution for network analysis. Explore IP addresses, DNS records, SSL certificates, and BGP data with ease. Stay efficient and secure with features like port scanning, whois lookup, and web crawling. Uncover valuable insights effortlessly. 🛠️🔍
kdns is a local DNS server and traffic inspection tool designed to help you monitor and analyze DNS traffic on your localhost. This tool provides a REST API for querying and modifying DNS configuration information and a real-time web interface for visualizing DNS logs.
Welcome to Hunter Phishing Domain! This repository curates a collection of useful tools for identifying lookalike and squatted domains often used in phishing attacks. These tools leverage techniques such as LookAlike and Domain Squatting to detect domains that mimic legitimate ones.
A tool that captures and analyzes DNS traffic to identify suspicious domain lookups, potential DNS tunneling, or communication with malicious domains.
LunarisEye — Smart Network & Web Scanner Explore networks and web targets with precision. Powered by lunaris_engine, LunarisEye offers adaptive port scanning, HTTP/TLS inspection, DNS checks, traceroute, and GeoIP lookups — all in a fast, intelligent CLI. Use responsibly and with authorization only.
SubGhost is a powerful subdomain discovery tool. It helps you discover hidden or less visible subdomains for a given domain using public API services. The tool is designed to be simple to use while offering great flexibility, such as the ability to choose the output format for results.
ReconX is a Linux-based, terminal-driven reconnaissance and vulnerability assessment framework for penetration testing and bug bounty hunting. It automates the full reconnaissance lifecycle.
DNS traffic analyzer written in Python for capturing, parsing, and inspecting DNS packets and queries in real time.
SubGhost is a powerful subdomain discovery tool. It helps you discover hidden or less visible subdomains for a given domain using public API services. The tool is designed to be simple to use while offering great flexibility, such as the ability to choose the output format for results.
DomainSentry is a Python tool for monitoring domain security. It enumerates subdomains, checks for new SSL certificates, scans HTTP/HTTPS status, MX records, open SMTP ports, and IIS default pages. Automated reports are emailed monthly via cron, ideal for detecting misconfigurations and vulnerabilities.
Protective DNS resolver based on Cloudflare Workers & D1 | 基于 Cloudflare Workers & D1 的 Protective DNS 解析服务
WebForensicAnalyzer is an advanced all-in-one tool for web reconnaissance, digital forensics, OSINT, and cybersecurity professionals. It automates deep website analysis—leveraging Shodan, Nmap, and more—to detect vulnerabilities, extract data, and deliver structured forensic results
An advanced, security-focused network traffic analysis tool designed for system administrators, cybersecurity professionals, and network engineers. The xsukax PCAP Analyzer provides comprehensive insights into network behavior while maintaining strong privacy protections and offering advanced threat detection capabilities.
This project demonstrates how to ingest, parse, and analyze DNS logs using Splunk Enterprise. By leveraging Zeek-style JSON DNS logs, we perform meaningful security and traffic analysis using Splunk Search Processing Language (SPL).
IP-DNS-SSL Lookup is a web application built with Next.js, offering three essential networking tools: IP Lookup, DNS Lookup, and SSL Lookup. It provides detailed insights into IP addresses, comprehensive DNS record listings with descriptions, and SSL certificate analysis. Computer network project.
A real-time DNS traffic analysis tool developed using Python and Scapy. It tracks website visits on the network via the terminal.
DNS Analysis Using AiEngine (Next Generation Network Intrusion Detection System Engine)
PCAP-based analysis of CryptoLocker and Word-Dropper malware samples using Wireshark and REMnux. Focus on DNS, HTTP, and TLS artifacts to identify adversary behavior and exfiltration attempts.
A Python tool for analyzing and summarizing network protocol traffic
A simple Python-based packet sniffer using Scapy to capture and log HTTP, DNS, and raw packets in real time
🛠️ Manage CloudFlare domains and security settings easily with batch operations for streamlined performance and enhanced control.
Wireshark-based cybersecurity project analyzing port scans, DNS anomalies, and network threats using real PCAP captures.