network-forensics

Installation
SKILL.md

Network Forensics

When to Use

Use when auditing network traffic, investigating incidents, analyzing protocol behavior, or reviewing packet captures from authorized security assessments.

Tool Reference

Tool Package Purpose
tcpdump system Live capture, BPF filtering
tshark wireshark CLI dissection, field extraction
editcap wireshark Split/merge/trim pcaps
mergecap wireshark Combine capture files
ngrep ngrep Regex pattern matching on packets
zeek zeek Protocol logging, script analysis
suricata suricata IDS/IPS rule matching
termshark termshark TUI packet browser
scapy pip:scapy Python packet crafting/parsing
Related skills
Installs
1
Repository
plurigrid/asi
GitHub Stars
21
First Seen
Mar 13, 2026