
OSSEC - Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, rootkit detection, real-time alerting and active response. OpenVAS - Framework of several services and tools offering a comprehensive and powerful vulnerability scanning and vulnerability management solution. Nessus - Comprehensive vulnerability scanning program. Metasploit Framework - An advanced open-source platform for developing, testing, and using exploit code. Lynis - Security and system auditing tool to harden Unix/Linux systems. AFICK - Security tool that allows to monitor the changes on your file systems, and so can detect intrusions. Zeek - Powerful network analysis framework that is much different from the typical IDS you may know. #Pwsafe org software#
Xplico - Network forensics analysis tool (NFAT), which is a software that reconstructs the contents of acquisitions performed with a packet sniffer.|| CLI: wireshark-cli, GUI: wireshark-qt Wireshark - Network protocol analyzer that lets you capture and interactively browse the traffic running on a computer network.What IP - Small GTK application to get info on your IP.vnStat - Console-based network traffic monitor that keeps a log of network traffic for the selected interfaces.Tcpdump - Common console-based packet analyzer that allows the user to intercept and display TCP/IP and other packets being transmitted or received over a network.Suricata - High performance Network IDS, IPS and Network Security Monitoring engine.Sshguard - Daemon that protects SSH and other services against brute-force attacks, similar to Fail2ban.Spectools - A set of utilities for spectrum analyzer hardware including Wi-Spy devices.Snort - Network intrusion prevention and detection system.
Smb4K - Advanced network neighborhood browser and Samba share mounting utility for KDE.
pyNeighborhood - GTK-based SMB/CIFS browsing utility. Ntop - Network probe that shows network usage in a way similar to what top does for processes. Nmap - Security scanner used to discover hosts and services on a computer network, thus creating a "map" of the network. ngrep - grep-like utility that allows you to search for network packets on an interface. netsniff-ng - High performance Linux network sniffer for packet inspection. Net Activity Viewer - Graphical network connections viewer, similar in functionality with Netstat. Nemesis - Command-line network packet crafting and injection utility. Kismet - 802.11 layer2 wireless network detector, sniffer, and intrusion detection system. justniffer - Network protocol analyzer that captures network traffic and produces logs in a customized way, can emulate Apache web server log files, track response times and extract all "intercepted" files from the HTTP traffic. jnettop - top-like console network traffic visualizer. IPTraf - Console-based network monitoring utility. hping - Command-line oriented TCP/IP packet assembler/analyzer. Honeyd - Tool that allows the user to set up and run multiple virtual hosts on a computer network. GNOME Network Tools - GNOME interface for various networking tools.
Ettercap - Multipurpose Network sniffer/analyser/interceptor/logger. Hosts and links change in size with traffic. Featuring link layer, IP and TCP modes, it displays network activity graphically. EtherApe - Graphical network monitor for Unix modeled after etherman. dsniff - Collection of tools for network auditing and penetration testing. darkstat - Captures network traffic, calculates statistics about usage, and serves reports over HTTP. bettercap - Swiss army knife for network attacks and monitoring. Arpwatch - Tool that monitors ethernet activity and keeps a database of Ethernet/IP address pairings. airgeddon - Multi-use bash script to audit wireless networks. See also Wikipedia:Comparison of packet analyzers. 1.9.2 Encryption, signing, steganographyįor detailed guides, see the main ArchWiki page, Security.