New release of CapLoader
π« JA3/JA4/SNI extraction from multi-segment TLS handshakes
π¨ Alerts on IOCs from @viql's RΓΆsti
π OSINT lookup on @jonasl's ScanMalware
π¦οΈExtracts packets from more encapsulation protocols
https://t.co/bbKCa8yutE
New tool released: #FlowCarp
ποΈIdentifies protocols without port numbers
π¨ Build protocol detection from example traffic
β‘οΈ Input: PCAP or PcapNG
β¬ οΈ Output: Flows and/or Alerts
https://t.co/3sqnfOpN4a
β¨ DFRWS EU 2026 Workshops
Led by Erik Hjelmvik (Netresec, Sweden), the session is designed for practitioners and researchers working with network and memory forensics in real-world investigations.
π Workshop Dates 23β24 March 2026
π§Ώ Details here: https://t.co/Aitqb7i2ua
New RAT C2 found. What malware C2 protocol is this is?
π₯ 47.83.173.19:5050
π₯ 47.84.203.73:5050
π₯ xuanwcai[.]com:5050
π₯ wkaiuahaaxx[.]icu:5050
Links to samples on ANY.βRUN and JoeSandbox available via infosec.βexchange link.
https://t.co/sImrWQmJ73
β¨ DFRWS EU 2026 Workshops
Led by Erik Hjelmvik (Netresec, Sweden), the session is designed for practitioners and researchers working with network and memory forensics in real-world investigations.
π Workshop Dates 23β24 March 2026
π Details here: π https://t.co/Aitqb7i2ua
Erik Hjelmvik will run a hands-on network forensic workshop at the upcoming Digital Forensics Research Conference in Sweden. Participants will get the chance to analyze:
πͺ Packets carved from memory dumps
π§ Unencrypted Tor traffic
https://t.co/N5CD2wuSnY
The early bird discount for our network forensics class expires by the end of this week. Sign up if youβd like to analyze PCAP files together with Erik Hjelmvik (creator of NetworkMiner and PolarProxy).
https://t.co/RriqjVOQ4q
DFRWS EU 2026 is seeking posters showcasing interesting digital forensics research for presentation in LinkΓΆping, Sweden, 24β27th March 2026. π₯ Submit via EasyChair ( as PDF) - Rolling notification until the program is full! #DFRWSEU2026#DFRWS#DigitalForensics