Zeek (formerly known as Bro) is a powerful free and open source framework for network traffic analysis and security monitoring.
Read moreCategory: Security
Maltrail – malicious traffic detection system
Maltrail is a malicious traffic detection system, utilizing publicly available (black)lists.
Read moreHostsblock – malware-blocking cronscript
Hostsblock is a POSIX-compatible script for Linux designed to take advantage of the HOSTS file to block malware.
Read morelibredefender – antivirus program
libredefender is an antivirus program. Scanning is implemented with libclamav.
Read moreUnhide – forensic tool to find hidden processes
Unhide is a forensic tool to find hidden processes and TCP/UDP ports by rootkits / LKMs or by another hiding technique.
Read morephpMussel – PHP-based anti-virus anti-trojan anti-malware solution
phpMussel is a PHP script designed to detect trojans, viruses, malware and other threats within files.
Read moreLinux Malware Detect – malware scanner
Linux Malware Detect (LMD) is a malware scanner that is designed around the threats faced in shared hosted environments.
Read moreClamTk – frontend for ClamAV
ClamTk is a frontend for ClamAV (Clam Antivirus).
Read moreYARA – pattern matching swiss knife for malware researchers
YARA is a free and open source tool aimed at (but not limited to) helping malware researchers to identify and classify malware samples.
Read moreClamAV – antivirus engine
Clam AntiVirus is a free and open source anti-virus toolkit, designed especially for e-mail scanning on mail gateways.
Read moreWireshark – network packet analyzer
Wireshark is a network packet analyzer. A network packet analyzer captures network packets and tries to display that packet data as detailed as possible.
Read morenetsniff-ng – Swiss army knife for network plumbing
netsniff-ng is a performant network analyzer and networking toolkit. It’s described as the Swiss army knife for network packets.
Read moredarkstat – captures network traffic
darkstat is a network statistics gatherer. It captures network traffic on a specified interface, calculates statistics about usage, and serves reports over HTTP.
Read moredsniff – collection of tools for network auditing and penetration testing
dsniff is a collection of tools for network auditing and penetration testing. dsniff, filesnarf, mailsnarf, msgsnarf, urlsnarf, and webspy passively monitor.
Read morengrep – grep applied to the network layer
ngrep strives to provide most of GNU grep’s common features, applying them to the network layer. ngrep is a pcap-aware tool.
Read more