Skip to content

Forensic Software & Applications

Explore supported forensic software tools, usage guides, tips & tricks, and direct download links.

Arkime

Arkime Project / AOL (Open Source) • Linux (server)

41 26

Large-scale full packet capture and search system for recording and indexing all network traffic.

View Details Download

NetworkMiner

Netresec (Open Source Edition) • Windows / Linux

40 34

A passive Network Forensic Analysis Tool (NFAT) for extracting files, credentials, and sessions from network traffic captures.

View Details Download

PcapXray

Srinivas (Open Source) • Windows / Linux / macOS (Python)

41 34

A PCAP analysis tool that visualizes network traffic as an interactive graph/map.

View Details Download

Snort

Cisco (Open Source) • Linux / Windows

38 31

Open-source, signature-based network intrusion detection and prevention system (IDS/IPS).

View Details Download

Suricata

Open Information Security Foundation (Open Source) • Linux / Windows / macOS

40 22

A next-generation IDS/IPS and network security monitoring engine with full multi-threading support.

View Details Download

Wireshark

Wireshark Foundation (Open Source) • Windows / Linux / macOS

41 27

The world's most widely used open-source network protocol analyzer for capturing and deeply inspecting packets.

View Details Download

Zeek

Zeek Project (Open Source) • Linux / FreeBSD / macOS

39 22

Open-source network security monitoring framework that turns raw traffic into structured, easy-to-analyze event logs.

View Details Download