Commit message (Collapse) | Author | Age | |
---|---|---|---|
* | Added reference to the new DGA model | Luca Deri | 2024-10-26 |
| | |||
* | Added reference to the existing nDPI DGA code | Luca Deri | 2024-10-26 |
| | |||
* | Moved new DGA code | Luca Deri | 2024-10-26 |
| | |||
* | Not necessary | Luca Deri | 2024-10-26 |
| | |||
* | added dga ml tests file to EXTRA_DIST | YellowMan | 2024-10-26 |
| | |||
* | ml tests for dga detection | YellowMan | 2024-10-26 |
| | |||
* | Added Ubuntu 20 fingerprint | Luca Deri | 2024-10-21 |
| | |||
* | ndpiReader: fix command line options used by wireshark (#2605) | Ivan Nardi | 2024-10-21 |
| | |||
* | Added further TCP fingerprints | Luca Deri | 2024-10-21 |
| | |||
* | Fix `ndpi_tot_allocated_memory` calculation if `ndpi_calloc()` used (#2604) | Toni | 2024-10-21 |
| | | | Signed-off-by: Toni Uhlig <matzeton@googlemail.com> | ||
* | Improved fingerprints | Luca Deri | 2024-10-21 |
| | |||
* | Improved TCP fingerprint | Luca Deri | 2024-10-20 |
| | |||
* | Improved TCP fingerprint | Luca Deri | 2024-10-20 |
| | |||
* | Reworked TCP fingeprint implementation | Luca Deri | 2024-10-20 |
| | |||
* | Minor inf fix | Luca Deri | 2024-10-20 |
| | |||
* | STUN: fix monitoring with RTCP flows (#2603) | Ivan Nardi | 2024-10-19 |
| | |||
* | ndpiReader: explicitly remove non ipv4/6 packets (#2601) | Ivan Nardi | 2024-10-19 |
| | |||
* | ndpiReader: add some statistics about monitoring (#2602) | Ivan Nardi | 2024-10-19 |
| | |||
* | Added support for RDP over TLS | Luca Deri | 2024-10-19 |
| | |||
* | Renamed os hints to avoid name clashes | Luca Deri | 2024-10-19 |
| | |||
* | Increased struct size (#2599) | Luca Deri | 2024-10-19 |
| | |||
* | Improved TCP fingepring calculation | Luca Deri | 2024-10-18 |
| | | | | Adde basidc OS detection based on TCP fingerprint | ||
* | Add configuration of TCP fingerprint computation (#2598) | Ivan Nardi | 2024-10-18 |
| | | | Extend configuration of raw format of JA4C fingerprint | ||
* | Added further boundary checks in TCP options parsing (#2597) | Luca Deri | 2024-10-18 |
| | | | * Added further memory checks | ||
* | Increased struct ndpi_flow_struct size (#2596) | Luca Deri | 2024-10-18 |
| | | | Build fix | ||
* | Update clang version | Luca Deri | 2024-10-18 |
| | |||
* | Added TCP header check | Luca Deri | 2024-10-18 |
| | |||
* | Fixes buffer overflow when parsing invalid TCP options | Luca Deri | 2024-10-17 |
| | |||
* | Improved statistics | Luca Deri | 2024-10-16 |
| | |||
* | Added -L <domain suffix> for loading domain suffixes | Luca Deri | 2024-10-15 |
| | | | | Exported domainanme in JSON file (-K JSON) | ||
* | Parser for ndpiReader JSON files | Luca Deri | 2024-10-15 |
| | |||
* | Implemented nDPI TCP fingerprint | Luca Deri | 2024-10-15 |
| | |||
* | STUN: minor fix for RTCP traffic (#2593) | Ivan Nardi | 2024-10-15 |
| | |||
* | STUN: if the same metadata is found multiple times, keep the first value (#2591) | Ivan Nardi | 2024-10-15 |
| | |||
* | CI: remove macos-12 (#2592) | Ivan Nardi | 2024-10-15 |
| | | | | It is deprecated and will be removed from GitHub. See: https://github.com/actions/runner-images/issues/10721 | ||
* | STUN: fix monitoring of Whatsapp and Zoom flows (#2590) | Ivan Nardi | 2024-10-15 |
| | |||
* | Add monitoring capability (#2588) | Ivan Nardi | 2024-10-14 |
| | | | | | | | | | | | | | Allow nDPI to process the entire flows and not only the first N packets. Usefull when the application is interested in some metadata spanning the entire life of the session. As initial step, only STUN flows can be put in monitoring. See `doc/monitoring.md` for further details. This feature is disabled by default. Close #2583 | ||
* | Added TCP fingerprint | Luca Deri | 2024-10-14 |
| | |||
* | Fixed JA4 invalid computation due to code bug and uninitialized values | Luca Deri | 2024-10-13 |
| | |||
* | Fix Windows build | Ivan Nardi | 2024-10-13 |
| | |||
* | Fix compilation on Windows | Ivan Nardi | 2024-10-13 |
| | |||
* | Added sonos dissector | Luca Deri | 2024-10-13 |
| | |||
* | Added u_int8_t ndpi_is_public_ipv4(u_int32_t a /* host byte order */); | Luca Deri | 2024-10-13 |
| | |||
* | Added TLS fingerprints | Luca Deri | 2024-10-11 |
| | |||
* | Added support for printing JA4r when enabled | Luca Deri | 2024-10-11 |
| | |||
* | Fix unit tests on CI on GitHub Actions (#2587) | Ivan Nardi | 2024-10-11 |
| | | | | On CI, tests run in parallel, because of `NDPI_FORCE_PARALLEL_UTESTS` define | ||
* | Added JA4 stats | Luca Deri | 2024-10-10 |
| | |||
* | fuzz: fix fuzzing (#2586) | Ivan Nardi | 2024-10-10 |
| | |||
* | Added addr_dump_path definition | Luca Deri | 2024-10-10 |
| | |||
* | Added -N option for dumping/restoring the DNS cache (when enabled) | Luca Deri | 2024-10-10 |
| | | | | Example ndpiReader -i en0 --cfg=dpi.address_cache_size,32768 -N /tmp/a |