Passive DNS Capture and Monitoring Toolkit
-
Updated
Sep 2, 2026 - Go
Passive DNS Capture and Monitoring Toolkit
C# code for Transferring Backdoor Payloads by DNS Traffic and Bypassing Anti-viruses
With this program you can bind applications to a specific network interface / network adapter. This is very useful if you have multiple (internet) connections and want your program to use a specific one.
Pure Python netflow (1K PPS!) and DNS correlation, with reusable Frame Streams, DnsTap and Protobuf implementations
Turn your recursive DNS (BIND) server into a network investigation enabler with DnsTap and RPZ. Make PTR recs great again!
DPP (DNS Packet Processor) — high-performance offline DNS PCAP analyzer in Rust that matches queries and responses and exports CSV or Parquet.
Agent pool that rotates keepalive agents for traffic switching via DNS records
This Python script extracts TCP streams from a Packet Capture (PCAP) file by filtering DNS queries for a specified "bad" domain.
Packet filter PSA
A hands-on DNS investigation using Wireshark to analyze YouTube DNS queries, responses, A, AAAA, and HTTPS records, TTL values, and response times.
To associate your repository with the dns-traffic topic, visit your repo's landing page and select "manage topics."