Find suspicous data in network streams
sb_finder
is the analyzing part of the StalkerBuster. It is based on
third-party libraries to scan .pcap
files.
For now, we are experimenting with different libs that allow scanning .pcap
streams.
The candidates:
Currently evaluated: scapy