mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-07 09:42:46 +01:00
82 lines
2.1 KiB
Plaintext
82 lines
2.1 KiB
Plaintext
The following tools are available on the analyst workstation.
|
|
|
|
NetworkMiner
|
|
url: https://www.netresec.com
|
|
Running NetworkMiner: Open terminal and run: mono /opt/NetworkMiner_2-5/NetworkMiner.exe --noupdatecheck
|
|
|
|
Wireshark
|
|
url: https://www.wireshark.org/
|
|
Running Wireshark: Applications > Internet > Wireshark Network Analyzer
|
|
|
|
dnsiff
|
|
url: https://www.monkey.org/~dugsong/dsniff/
|
|
Running dsniff: Open terminal and run: dsniff -h
|
|
|
|
hping3
|
|
url: http://www.hping.org/hping3.html
|
|
Running hping3: Open terminal and run: hping3 -h
|
|
|
|
netsed
|
|
url: http://silicone.homelinux.org/projects/netsed/
|
|
Running netsed: Open terminal and run: netsed -h
|
|
|
|
ngrep
|
|
url: https://github.com/jpr5/ngrep
|
|
Running ngrep: Open terminal and run: ngrep -h
|
|
|
|
scapy
|
|
url: http://www.secdev.org/projects/scapy/
|
|
Running scapy: Open terminal and run: scapy
|
|
|
|
ssldump
|
|
url: http://www.rtfm.com/ssldump/
|
|
Running ssldump: Open terminal and run: ssldump -h
|
|
|
|
tcpdump
|
|
url: http://www.tcpdump.org
|
|
Running tcpdump: Open terminal and run: tcpdump -h
|
|
|
|
tcpflow
|
|
url: https://github.com/simsong/tcpflow
|
|
Running tcpflow: Open terminal and run: tcpflow -h
|
|
|
|
tcpxtract
|
|
url: http://tcpxtract.sourceforge.net/
|
|
Running tcpxtract: Open terminal and run: tcpxtract -h
|
|
|
|
whois
|
|
url: http://www.linux.it/~md/software/
|
|
Running whois: Open terminal and run: whois -h
|
|
|
|
foremost
|
|
url: http://foremost.sourceforge.net
|
|
Running foremost: Open terminal and run: foremost -h
|
|
|
|
tcpstat
|
|
url: https://frenchfries.net/paul/tcpstat/
|
|
Running tcpstat: Open terminal and run: tcpstat -h
|
|
|
|
tcptrace
|
|
url: http://www.tcptrace.org
|
|
Running tcptract: Open terminal and run: tcptrace -h
|
|
|
|
sslsplit
|
|
url: https://github.com/droe/sslsplit
|
|
Running sslsplit: Open terminal and run: sslsplit -h
|
|
|
|
bit-twist
|
|
url: http://bittwist.sourceforge.net
|
|
Running bit-twist: Open terminal and run: bittwist -h
|
|
|
|
chaosreader
|
|
url: http://chaosreader.sourceforge.net
|
|
Running chaosreader: Open terminal and run: perl /usr/bin/chaosreader -h
|
|
|
|
Google Chrome
|
|
url: https://www.google.com/chrome/
|
|
Running Google Chrome: Applications > Internet > Google Chrome
|
|
|
|
|
|
|
|
|