Commit graph

369 commits

Author SHA1 Message Date
Luca Deri
1bb10863e4 Added android.pcap 2020-03-23 10:08:57 +01:00
Luca Deri
924bc9698b Added badpackets.pcap 2020-03-23 10:06:16 +01:00
Luca Deri
9aba94713c Added dns_exfiltration.pcap 2020-03-23 10:06:00 +01:00
Luca Deri
00beac6b1a Added netbios.pcap 2020-03-23 10:05:41 +01:00
Luca Deri
8c2ffc5b37 Added dos_win98_smb_netbeui.pcap 2020-03-23 10:05:24 +01:00
Luca Deri
b2cbe76e71 Added QUIC v046 test pcap 2020-03-17 16:51:25 +01:00
Luca Deri
2bd89be3e2 Added new TLS test files 2020-02-08 10:38:22 +01:00
MrTiz9
3422574c17 FIXED - nDPI now detect RCE injections via PCRE instead Intel Hyperscan 2020-02-01 17:18:35 +01:00
MrTiz9
daa1171593 nDPI now detect RCE in HTTP GET requests 2020-01-24 17:16:18 +01:00
Luca Deri
5571ce114d Added flow extra info field
Updated tests/results
2020-01-10 22:21:16 +01:00
Luca Deri
3ba7667887 Various ethereum improvements 2020-01-08 22:01:45 +01:00
Luca Deri
f0014a5a24 Removed TLS debug code that could have caused crashes 2020-01-05 21:28:35 +01:00
Luca
f6c7a33177 Added TLS test 2020-01-01 21:27:18 +01:00
Luca
daae1cc9b1 Reworked TLS dissection 2020-01-01 12:59:19 +01:00
Luca Deri
68d66b780c Added new test pcaps
Renamed protocol 104 to IEC60870 (more meaningful)
2019-11-23 13:27:34 +01:00
Luca Deri
bdc0719e76 Added auth failed support with FTP 2019-11-21 23:31:52 +01:00
Luca
d0e7e69552 Renamed DNSoverHTTPS to handle bot DoH and DoT 2019-11-08 09:23:52 +00:00
Luca Deri
a3a85106a1 Implemented SQL Injection and XSS attack detection 2019-11-01 23:05:11 +01:00
Luca
6e314ea6d7 Added zabbix dissector 2019-10-29 19:25:46 +01:00
Luca Deri
fd38b752c4 Added capwap support 2019-10-27 19:03:23 +01:00
Luca Deri
6b5a9aa992 Implemented Kerberos metadata extraction 2019-10-08 13:32:21 +02:00
Ravi Kerur
bc1b266174 Add Cisco anyconnect VPN signature.
Signed-off-by: Ravi Kerur <ravi.kerur@viasat.com>
2019-09-28 19:52:53 -07:00
emanuele-f
05aa27e477 Add test for custom categories match on HTTP and SSL flows 2019-09-27 14:01:12 +02:00
emanuele-f
277b4a060a Add categories test PCAP 2019-09-27 10:15:20 +02:00
Luca Deri
7de9fd7170 Updated instagram check 2019-09-26 22:08:21 +02:00
Luca Deri
0e9918464b Added Zoom protocol support removing invalid STUN/Skype detections 2019-09-26 21:52:42 +02:00
Luca Deri
ce40155377
Merge pull request #783 from ntop/ndpi_ps_vue
Ndpi ps vue
2019-09-26 19:37:49 +02:00
Ravi Kerur
4170eb3a1d Modified logic and test pcap file included.
Signed-off-by: Ravi Kerur <ravi.kerur@viasat.com>
2019-09-25 16:21:22 -07:00
Luca Deri
62fa0908a3 Improved packet datastructure cleanup after packet processing
Cleaned up code of steam dissector
Added steam test pcap
2019-09-25 23:59:22 +02:00
Luca Deri
421f819b8a Added signal test pcap 2019-09-21 09:40:20 +02:00
Luca Deri
ac1f7d71dd New instagram testing set 2019-09-18 12:23:55 +02:00
Luca Deri
6966e0d19b Added STUN check to avoid false positives
Added fingerprint comments in SSH/TLS
Added netflow test pcap
2019-09-11 17:13:49 +02:00
Luca Deri
3d3cae1f20 SSH test file 2019-08-22 19:36:36 +02:00
Luca Deri
1e8a43d51e
Merge pull request #758 from tansly/wireguard
Add support for WireGuard VPN
2019-08-22 19:31:51 +02:00
Luca
90547c4fd2 Added SMBv1 test file 2019-08-08 23:33:40 +02:00
Yağmur Oymak
cdf61de129 Add test for WireGuard 2019-07-24 19:18:20 +03:00
Luca Deri
5c758d4564 Reworked output
-v 1 now prints only unknown flows
-v 2 now prints all flows
2019-07-15 14:45:25 +02:00
Luca Deri
c43bec826d Updated results with the new SSL dissection
Added RDP dissector
2019-05-30 11:15:50 +02:00
Luca Deri
2f14b8abbf Added test file for FTP 2019-04-12 12:19:11 +02:00
Luca Deri
5241c9f3cf Added Modbus over TCP dissector 2018-12-21 18:25:44 +01:00
Luca Deri
9c5a4a6d1f Added UPnP test pcap
updated Nintendo test ourcome
2018-11-07 22:45:29 +01:00
Darryl Sokoloski
31f62c5cf5 New dissector: Nest Log Sink
This is a dissector for the Nest Log Sink protocol which is used by the Nest Protect (https://nest.com/ca/smoke-co-alarm/overview/).

Signed-off-by: Darryl Sokoloski <darryl@sokoloski.ca>
2018-09-19 21:25:16 -04:00
Luca
c6b427c252 Implementation of Bitcoin, Ethereum, ZCash, Monero dissectors all identified as mining
Implements #503
2018-09-18 18:13:04 +02:00
Campus
225826ce83 FIX: dropbox dissector. UPD: updated pcap file with new dropbox pkts 2018-09-05 16:10:07 +02:00
Darryl Sokoloski
b3b8feabf1 Added new dissector for Memcached.
Signed-off-by: Darryl Sokoloski <darryl@sokoloski.ca>
2018-08-15 16:47:21 -04:00
Darryl Sokoloski
212598b45e Added example SSDP M-SEARCH capture file. 2018-07-20 13:28:38 -04:00
Campus
3407db11cd added new viber pcap and updated results 2018-05-29 20:37:02 +02:00
Leonn
5a7f58d23f 💡 Add Apache JServ Protocol Dissector 2018-04-22 01:54:28 -03:00
Luca Deri
d4a20ba6a8 Increased number of protocols to 512
Implemented WhatsApp file exchage support (added test pcap)
2018-03-01 20:52:06 +01:00
Campus
1d1082342f added diameter protocol dissector 2018-01-02 13:47:46 +01:00