DISCLAIMER: This repository contains documentation and template configurations. Proprietary detection rules, client-specific parsers, and internal analysis plugins have been removed. This repository is not open for contributions yet.
- Packet Capture Analysis: Deep inspection of network traffic
- Threat Hunting: Automated IOC detection across network artifacts
- Timeline Reconstruction: Visualize attack sequences
- Malware Traffic Analysis: Detect C2 communications
| Protocol | Analysis Depth |
|---|---|
| HTTP/HTTPS | Full header analysis |
| DNS | Deep recursive analysis |
| SMTP/POP3/IMAP | Header and attachment inspection |
| SMB/NFS | File transfer reconstruction |
python forensic_analyzer.py -i capture.pcap -o report.html