MATHEMATICS, COMPUTER SCIENCE AND EDUCATION
“ST. CYRIL AND ST. METHODIUS” UNIVERSITY OF VELIKO TARNOVO - UNIVERSITY PRESS

Python Based Network Analysis Algorithm for Handling Raw Packet Captures.


Authors:
Vasil Andonov Vasil Levski National Military University, Bulgaria

Pages: 37-45
DOI: https://doi.org/10.54664/YAWE8900

Abstract:

Modern network analysis places demands on tools that transform raw packet captures into actionable intelligence with minimal manual effort. The algorithm in this paper rises to this challenge through its innovative dual engine approach, combining the efficiency of dpkt for packet parsing with PyShark’s depth for DNS analysis. The tool automatically classifies 21 application protocols, maps traffic geolocations via GeoIP2, and distinguishes intranet, VPN, and internet communications—all while generating structured Excel reports. Unlike conventional analyzers, it detects protocols through both port and payload inspection, revealing hidden traffic patterns. This solution reduces the time for analysing the raw data and the focus goes to the already filtered data.

Keywords:

python, analysis, monitoring, network traffic.

Download


18 downloads since 15.6.2026 г.
NA
  • © ST. CYRIL AND ST. METHODIUS UNIVERSITY OF VELIKO TARNOVO 2016 - 2026