Xplico is a Network Forensic Analysis Tool (NFAT).
The goal of Xplico is extract from an internet traffic capture the applications data contained. For example, from a pcap file Xplico extracts each email (POP, IMAP, and SMTP protocols), all HTTP contents, each VoIP call (SIP, MGCP, MEGACO, RTP), IRC, WhatsApp...
Xplico is able to classify more than 140 (application) protocols.
Xplico cam be used as sniffer-decoder if used in "live mode" or in conjunction with netsniff-ng.
Xplico is used also in CapAnalysis: http://www.capanalysis.net

Features

  • Network Forensic
  • Digital Forensics
  • TCP/IP Protocol Decoder
  • Packet Sniffer
  • Sniffer
  • PCAP Parser
  • IPv4 and IPv6

Project Samples

Project Activity

See All Activity >

License

GNU General Public License version 2.0 (GPLv2)

Follow Xplico

Xplico Web Site

You Might Also Like
Enterprise-Grade Monitoring - Zero Compromises Icon
Enterprise-Grade Monitoring - Zero Compromises

PRTG delivers deep visibility and proactive alerts for complex IT. Monitor, analyze, and optimize - all in one platform.

Managing a large, distributed IT environment demands more than basic monitoring. PRTG provides a unified view of your entire infrastructure - across sites, clouds, and hybrid setups. Advanced analytics, customizable dashboards, and granular access controls empower your team to detect issues early and respond fast. Automate reporting, ensure compliance, and scale effortlessly as your network grows. With PRTG, you get reliability, flexibility, and the insights you need to keep your business running at peak performance.
Start Your Free PRTG Trial
Rate This Project
Login To Rate This Project

User Ratings

★★★★★
★★★★
★★★
★★
1
0
0
0
1
ease 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5
features 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5
design 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5
support 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5

User Reviews

  • Xplico does not allow parallel compiling. The Makefile under manipulators/mwmail and system/script directories fail at the rule below when launching multiple GNU Make jobs (e.g. make -j4). Replace the *.pyc with $*.*.pyc and it will compile in parallel: %.pyc: %.py rm -f $@ $(PYCMPL) $< if [ -d "__pycache__" ]; then mv __pycache__/*.pyc $@; fi
  • Thanks for software and updates.
    3 users found this review helpful.
Read more reviews >

Additional Project Details

Operating Systems

Linux

Intended Audience

Government, Information Technology, Security, Security Professionals

User Interface

Command-line, Web-based

Programming Language

C, JavaScript, PHP, Python

Database Environment

MySQL, PostgreSQL (pgsql), SQLite

Related Categories

Python Security Software, Python Network Monitoring Software, Python Information Analysis Software, Python Packet Sniffers, C Security Software, C Network Monitoring Software, C Information Analysis Software, C Packet Sniffers, PHP Security Software, PHP Network Monitoring Software, PHP Information Analysis Software, PHP Packet Sniffers, JavaScript Security Software, JavaScript Network Monitoring Software, JavaScript Information Analysis Software, JavaScript Packet Sniffers

Registered

2008-09-13