Software and libraries used in Xplico

Useful tools and applications

  • Wireshark. The World's Most Popular Network Protocol Analyzer.
  • ntop is a network traffic probe that shows the network usage.
  • nProbe an Extensible NetFlow v5/v9/IPFIX GPL Probe for IPv4/v6.
  • Monitoring for Large-Scale Networks.
  • TcpDump.
  • Ettercap Ettercap is a suite for man in the middle attacks on LAN.
  • ngrep network grep.
  • tcpxtract is a tool for extracting files from network traffic based on file signatures.
  • Tcpreplay.
  • Rtpbreak analyze any RTP session.
  • Rtpplay Play back RTP sessions recorded by rtpdump.
  • Driftnet is a program which listens to network traffic and picks out images from TCP streams it observes.
  • Flowgrep is a basic IDS/IPS tool.
  • DSSL is a SSL traffic decryption and TCP reassembly toolkit.
  • SSLScan determines what ciphers are supported on SSL-based services.
  • SIPcrack SIP login dumper/cracker.
  • PyFlag is an advanced forensic tool.
  • Blueye Layer 7 Sniffer.