e62a14dafc
Generate interlinked wiki from master inventory: 397 tool pages, 15 workflow pages, 27 recipe pages, 33 category pages, plus index. All pages use [[wiki-links]] for cross-navigation between tools, workflows, recipes, and categories (1782 links total). Install zk for interactive browsing with fzf search, tag filtering, and backlink discovery. Add 'fhelp wiki' command and Makefile target. Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
1.2 KiB
1.2 KiB
cs-parse-traffic.py
Decrypt and parse Cobalt Strike beacon network traffic using extracted keys
Category: categories/explore-network-interactions-monitoring | Tier: Rich (FOR610) Docs: https://docs.remnux.org/discover-the-tools/explore+network+interactions/monitoring
Usage
cs-parse-traffic.py -f <capture.pcap> -k <keys_file>
Workflows
- workflows/cobalt-strike-workflow — Step 5: Traffic Decryption
Related Tools
- tools/burp-suite-community-edition — Investigate website interactions using this web proxy.
- tools/mitmproxy — Interactive HTTPS proxy for intercepting, inspecting, and mo
- tools/network-miner-free-edition — Examine network traffic and carve PCAP capture files.
- tools/ngrep — Search network traffic for patterns — like grep for packets
- tools/polarproxy — Transparent TLS proxy that decrypts traffic and saves it as
#cobalt-strike #traffic #decryption