FreshRSS

๐Ÿ”’
โŒ Secure Planet Training Courses Updated For 2019 - Click Here
There are new available articles, click to refresh the page.
Today โ€” September 8th 2025Your RSS feeds

Detect Suspicious/Malicious ICMP Echo Traffic - Using Behavioral and Protocol Semantic Analysis

The article explores the implementation of our ICMP detection module, detailing the engineering process and how the ICMP Echo Stream (iStream) assembler played a key role in designing its core detection rules.

submitted by /u/MFMokbel
[link] [comments]
Before yesterdayYour RSS feeds

Introducing ICMP Echo Streams (iStreams)

With version 2.0, we have added the capability to construct ICMPv4/v6 Echo streams, which we refer to throughout the document as iStreams (note the โ€˜iโ€™). PacketSmith is the only known tool capable of constructing ICMP (when the version is not specified, both v4 and v6 are considered) Echo streams, similar to TCP/UDP streams. With this feature, we can interrogate and dissect the ICMP Echo protocol in various ways to capture its unique behavioural and semantic characteristics.

submitted by /u/MFMokbel
[link] [comments]

IPv4/IPv6 Packet Fragmentation: Detection & Reassembly

Yesterday, we released PacketSmith v2.0, and today we are publishing an article detailing some of the implementation details of IPv4/IPv6 Packet Fragmentation: detection and reassembly.

submitted by /u/MFMokbel
[link] [comments]

Learn how to fix a PCAP generated by FakeNet/-NG using PacketSmith

PacketSmith: A Comprehensive CLI Utility for Editing, Transforming, and Analyzing PCAP Network Traffic.

submitted by /u/MFMokbel
[link] [comments]
โŒ