Tattoo will provide a set of command-line scripts for analyzing raw tcpdump files or ASCII hexadecimal representations of network traffic to identify format, function, and communication model.
Be the first to post a text review of Tattoo: Traffic Analysis Toolkit. Rate and review a project by clicking thumbs up or thumbs down in the right column.
While there are a large number of monitoring tools that capture and decode known TCP/IP and application layer protocols, there are very few tools for analyzing unknown, proprietary, or encrypted protocols or building abstract represenations of that traffic. Tattoo will provide a set of command-line scripts for analyzing raw tcpdump files or ASCII hexadecimal representations of network traffic to identify format (headers and payload), function (how the protocol works), and communication model (1-n, 1-1, n-n, etc.) for any network protocol that can be captured by libpcap.
Be the first person to add a text review.
Copyright © 2009 Geeknet, Inc. All rights reserved. Terms of Use
Thanks for your rating!
Would you also like to write a review?