performing-network-traffic-analysis-with-tshark

Community

Automate PCAP analysis with tshark and pyshark.

AuthorYukiIto1999
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Analyze PCAP captures to automatically extract protocol statistics, identify top talkers, detect suspicious flows, and surface DNS/I hypothesis like DNS tunneling, plus collect HTTP URLs and IOCs for rapid investigation.

Core Features & Use Cases

  • Protocol statistics via tshark
  • Top talkers and conversations extraction
  • Detection of port scans and suspicious flows
  • DNS queries and DNS tunneling indicators
  • HTTP URL extraction and IOC summarization
  • Structured report generation for incident response

Quick Start

Analyze a PCAP file to generate a comprehensive analysis report in JSON.

Dependency Matrix

Required Modules

pyshark

Components

scriptsreferences

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: performing-network-traffic-analysis-with-tshark
Download link: https://github.com/YukiIto1999/ctf-sleuth/archive/main.zip#performing-network-traffic-analysis-with-tshark

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.