aboutsummaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAge
* Remove the autoconf cache value from the previous and failed check before ↵fix/overflow-and-libgerror-checkToni Uhlig2020-11-24
| | | | | | checking again. Signed-off-by: Toni Uhlig <matzeton@googlemail.com>
* Fixed stack overflow caused by missing buffer space for the trailing \0 ↵Toni Uhlig2020-11-24
| | | | | | added by sprintf() Signed-off-by: Toni Uhlig <matzeton@googlemail.com>
* Warning fixAlfredo Cardigliano2020-11-23
|
* Updated disney definitionLuca Deri2020-11-22
|
* TypoLuca Deri2020-11-22
|
* Added 129.205.94.0/23 to Facebook network listLuca Deri2020-11-22
|
* Quic fixes (#1067)Ivan Nardi2020-11-22
| | | | | | | * QUIC: fix return value on error path on quic_cipher_init() * QUIC: allow dissection of sessions forcing version negotiation Enhance heuristic to avoid false positives.
* iec60870-5-104: fix heap-buffer-overflow error (#1066)Ivan Nardi2020-11-22
|
* Added prerequisites for Ubuntu/Debian systemsLuca Deri2020-11-18
|
* Install ndpi under /usrAlfredo Cardigliano2020-11-17
|
* Updated resultsLuca Deri2020-11-16
|
* Compilation fixLuca Deri2020-11-16
|
* Add Virtual Asssitant (Alexa, Siri) support. (#1057)Zied Aouini2020-11-16
| | | | | | | | | | | | | | | * Add AmazonAlexa protocol. * Add AmazonAlexa test file and result. * Include pcapng as file format. * Rename Category to VirtualAssistant. * Add AppleSiri virtual assistant. * Fix pcapng test files format support. Co-authored-by: Luca Deri <lucaderi@users.noreply.github.com>
* lib/ndpi_content_match: update TOR IPs (#1063)Oleksandr Natalenko2020-11-16
| | | Signed-off-by: Oleksandr Natalenko <oleksandr@natalenko.name>
* Implement DGA detection performances tracking workflow. (#1064)Zied Aouini2020-11-16
| | | | | | | | | | | | | * Implement dga evaluation helper. * Add test set for DGA classification. * Add DGA classification performances tracking as part of Travis. * Add DGA evaluation doc. * Fix CI on OSX. * Add missing backquote.
* Improve subprotocols detection. (#1062)Zied Aouini2020-11-16
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * Improve Spotify detection. * Improve Skype detection. * Improve Microsoft detection. * Fix Microsoft detection categories. * Improve Waze detection. * Improve Apple detection. * Improve WindowsUpdate detection. * Improve TikTok detection. * Improve Teams detection. * Improve Youtube detection. * Improve Messenger detection. * Improve Twitch detection. * Improve Hulu detection. * Improve Facebook detection. * Improve AmazonVideo detection.
* Add Tumblr support. (#1061)Zied Aouini2020-11-16
| | | | | | | * Add Tumblr protocol. * Add Tumblr test file and result. Co-authored-by: Luca Deri <lucaderi@users.noreply.github.com>
* Add Reddit support. (#1060)Zied Aouini2020-11-16
| | | | | | | * Add Reddit protocol. * Add Reddit test file and result. Co-authored-by: Luca Deri <lucaderi@users.noreply.github.com>
* Add Pinterest support. (#1059)Zied Aouini2020-11-16
| | | | | | | * Add Pinterest protocol. * Add Pinterest test file and result. Co-authored-by: Luca Deri <lucaderi@users.noreply.github.com>
* Add DisneyPlus protocol. (#1058)Zied Aouini2020-11-16
|
* File nor necessary and generated by configureLuca Deri2020-11-12
|
* Renumbered AmongUs protocolLuca Deri2020-11-09
|
* Added support for AmongUs. (#1054)Toni2020-11-09
| | | Signed-off-by: Toni Uhlig <matzeton@googlemail.com>
* Support raw IPv4 / IPv6 pcap packet processing. (#1053)Toni2020-11-09
| | | Signed-off-by: Toni Uhlig <matzeton@googlemail.com>
* Improved SSH protocol detection. (#1052)Toni2020-11-09
| | | Signed-off-by: Toni Uhlig <matzeton@googlemail.com>
* fixes issue #1050 Syntax error caused buffer pointer to equal 0x1 (#1051)Don J. Rude2020-11-09
| | | | | | | | | | | | | | | | | * Syntax error caused buffer pointer to equal 0x1 Possible copy-paste from lines 141-142? * Another comma operator * whitespace matching * another comma operator * another comma operator * another comma operator * Check for non-zero payload
* Updated ESNI/SNI alarm generation prolicyLuca Deri2020-11-08
|
* Reworked IEC60870 dissectorLuca Deri2020-11-04
|
* IEC60870 dissection improvementsLuca Deri2020-11-04
|
* Cosmetic changesLuca Deri2020-11-03
|
* :bulb: Add mongodb protocol dissector (#1048)Leonn2020-11-03
|
* Restored Ubuntu/Debian packagingLuca Deri2020-11-03
|
* Fix/packaging (#1047)Toni2020-11-03
| | | | | | | | | | | | | * Fix OpenWrt build. Signed-off-by: Toni Uhlig <matzeton@googlemail.com> * Fixed Debian/Ubuntu packaging. Signed-off-by: Toni Uhlig <matzeton@googlemail.com> * Added DPKG package build to a CI job. Signed-off-by: Toni Uhlig <matzeton@googlemail.com>
* QUIC: fix dissection of Initial packets coalesced with 0-RTT one (#1044)Ivan Nardi2020-11-03
| | | | | * QUIC: fix dissection of Initial packets coalesced with 0-RTT one * QUIC: fix a memory leak
* Updated results with numeric IP detectionLuca Deri2020-11-01
|
* Fix for detecting numeric IPsLuca Deri2020-11-01
|
* Centos8 package fixLuca Deri2020-10-29
|
* Fix libdir on centos8Alfredo Cardigliano2020-10-29
|
* Removed generation of /usr/lib/.build-idAlfredo Cardigliano2020-10-29
|
* Set /usr as installation prefixLuca Deri2020-10-29
|
* Move libraries from /usr/local to /usrAlfredo Cardigliano2020-10-29
|
* Generate NDPI_API_VERSION based on git commands.Vitaliy Ivanov2020-10-29
| | | | | | | | | https://github.com/ntop/PF_RING/issues/668 Check for .git directory works in case of usual clone of nDPI repo. But if you integrate is as submodule then .git is a file. Signed-off-by: Vitaliy Ivanov <vitaliyi@interfacemasters.com>
* Added boundary checkLuca Deri2020-10-27
|
* Improve skype detection (#1039)Igor Duarte2020-10-27
| | | | | | | * Add new skype pcap PCAP extracted from SkypeIRC.cap (available in https://wiki.wireshark.org/SampleCaptures?action=AttachFile&do=get&target=SkypeIRC.cap) * Improve skype detection
* Moved global in reader_util.cLuca Deri2020-10-27
|
* Added -D flag for detecting DoH in the wildLuca Deri2020-10-26
| | | | Removed heuristic from CiscoVPN as it leads to false positives
* Various improvemement when using ndpi_pref_enable_tls_block_dissection:Luca Deri2020-10-24
| | | | | | application data TLS blocks are now ignored when exchanged before - the end of certificate negotiation (up to TLS 1.2) - change cipher
* Added -x for checking patternsLuca Deri2020-10-22
|
* Added CPHA - CheckPoint High Availability Protocol protocl supportLuca Deri2020-10-22
|
* Fix parsing of DLT_PPP datalink type (#1042)Ivan Nardi2020-10-21
|