Skip to content
All security projects
Security projectDemo readyNetwork forensics

Reverse Shell Study

Safe lab metadata analyzer for suspicious outbound reverse-shell-like network behavior — pcap metadata only, no payloads.

Reads pcap metadata (connection records only, no packet content), analyzes outbound connections to suspicious destinations and ports, and flags interactive-session indicators (low data, long duration, persistent unidirectional flow to a non-standard port). Findings, risk-scored summary, Markdown report, timeline, and analyst triage handoff.

PythonCLIpcap metadataNetwork forensics

Catalog entry only — a full write-up lands closer to release.

Related across catalogs

Want a heads-up when Reverse Shell Study releases?

Subscribe via blog