2013-12-05_tcpflow-and-BE-update
2013-12-05_tcpflow-and-BE-update
2013-12-05_tcpflow-and-BE-update
- No tags were found...
You also want an ePaper? Increase the reach of your titles
YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.
<strong>tcpflow</strong> 1.4 uses the bulk_extractor plug-in APIBasic structure of <strong>tcpflow</strong> similar to basic structure of bulk_extractor.• Exp<strong>and</strong>ed bulk_extractor API to h<strong>and</strong>le call-backs for packets• Visualization h<strong>and</strong>led as another module• Currently single-threadedTCPcreate_fileMD5packet iteratorHTTP & gzipOther bulk_extractor modules can be employed:• JSON• BASE64• GPS32