u/rachzera

Best tools for PCAP analysis in OT environments?

Cybersec engineer here!

I've been digging more into extracting network traffic data (mostly from ICS) lately, and would like to get to know some good tools for this job, specially regarding data visualization.

Tshark does get the hardest part of the job (artifacts extraction, passive asset discovery, etc) done well, but I still would like to test some tools that really focus on the "analyzing" part.

Any suggestions?

reddit.com
u/rachzera — 2 days ago