Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

EndaceProbes deliver a flawless record of Network History, enabling the resolution of Cybersecurity, Network, and Application challenges. They provide transparency for every incident, alert, or issue through a packet capture platform that seamlessly integrates with various commercial, open-source, or custom tools. Gain a clear view of network activities, allowing for thorough investigations and defenses against even the most formidable Security Threats. Capture essential network evidence effectively to expedite the resolution of Network and Application Performance problems or outages. The open EndaceProbe Platform unifies tools, teams, and workflows into a cohesive Ecosystem, making Network History readily accessible from all your resources. This functionality is embedded within existing workflows, eliminating the need for teams to familiarize themselves with new tools. Additionally, it serves as a robust open platform that allows the deployment of preferred security or monitoring solutions. With the capability to record extensive periods of searchable, precise network history across your entire infrastructure, users can efficiently manage and respond to various network challenges as they arise. This comprehensive approach not only enhances overall security but also streamlines operational efficiency.

Description

Xplico is a prominent tool featured in many leading digital forensics and penetration testing distributions, including Kali Linux, BackTrack, DEFT, Security Onion, Matriux, BackBox, CERT Forensics Tools, Pentoo, and CERT-Toolkit. It supports simultaneous access for multiple users, allowing each to manage one or several cases effectively. The interface is web-based, and its backend database options include SQLite, MySQL, or PostgreSQL. Additionally, Xplico can function as a Cloud Network Forensic Analysis Tool. Its primary objective is to extract application data from internet traffic captures, such as retrieving emails via protocols like POP, IMAP, and SMTP, along with HTTP content, VoIP calls through SIP, and file transfers using FTP and TFTP from pcap files. Importantly, Xplico is not classified as a network protocol analyzer. As an open-source Network Forensic Analysis Tool (NFAT), it organizes the reassembled data with an associated XML file that distinctly identifies the data flows and the corresponding pcap file. This structured approach enables users to efficiently analyze and manage the data extracted from network traffic.

API Access

Has API No 

API Access

Has API No 

Screenshots View All

Screenshots View All

Integrations

ARGUS Yes 
Cisco SecureX Yes 
Corelight Yes 
Cortex XSOAR Yes 
Darktrace Yes 
Fortinet Yes 
Google Security Operations (SecOps) Yes 
Keysight Application Threat Intelligence Yes 
LogRhythm SIEM Yes 
MySQL No 
Network Critical Yes 
Palo Alto Networks AutoFocus Yes 
Palo Alto Networks Panorama Yes 
Plixer One Yes 
SQLite No 
Snort Yes 
Sumo Logic Yes 
Tines Yes 
Vectra AI Yes 
Wireshark Yes 

Integrations

ARGUS No 
Cisco SecureX No 
Corelight No 
Cortex XSOAR No 
Darktrace No 
Fortinet No 
Google Security Operations (SecOps) No 
Keysight Application Threat Intelligence No 
LogRhythm SIEM No 
MySQL Yes 
Network Critical No 
Palo Alto Networks AutoFocus No 
Palo Alto Networks Panorama No 
Plixer One No 
SQLite Yes 
Snort No 
Sumo Logic No 
Tines No 
Vectra AI No 
Wireshark No 

Pricing Details

No price information available.
Free Trial No 
Free Version No 

Pricing Details

No price information available.
Free Trial No 
Free Version No 

Deployment

Web-Based Yes 
On-Premises Yes 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Customer Support

Business Hours Yes 
Live Rep (24/7) Yes 
Online Support Yes 

Customer Support

Business Hours No 
Live Rep (24/7) No 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) Yes 
In Person Yes 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) Yes 
In Person No 

Vendor Details

Company Name

Endace

Founded

2001

Country

Global

Website

www.endace.com

Vendor Details

Company Name

Xplico

Founded

2007

Website

www.xplico.org

Product Features

Network Traffic Analysis (NTA)

Anomalous Behavior Detection Yes 
High Bandwidth Usage Monitoring Yes 
Historical Behavior Data Yes 
Identify High Network Traffic Sources Yes 
Network Transaction Visibility Yes 
Stream Data to IDR or Data Lake Yes 
Traffic Decryption Yes 

Alternatives

Alternatives

NetworkMiner Reviews

NetworkMiner

Netresec
Omnipeek Reviews

Omnipeek

LiveAction
WinDump Reviews

WinDump

WinPcap
Capsa Reviews

Capsa

Colasoft