Python Based Network Analysis Algorithm for Handling Raw Packet Captures.
Authors:
Vasil
Andonov
Vasil Levski National Military University, Bulgaria
Pages:
37-
45
DOI: https://doi.org/10.54664/YAWE8900
Abstract:
Modern network analysis places demands on tools that transform raw packet captures into actionable intelligence with minimal manual effort. The algorithm in this paper rises to this challenge through its innovative dual engine approach, combining the efficiency of dpkt for packet parsing with PyShark’s depth for DNS analysis. The tool automatically classifies 21 application protocols, maps traffic geolocations via GeoIP2, and distinguishes intranet, VPN, and internet communications—all while generating structured Excel reports. Unlike conventional analyzers, it detects protocols through both port and payload inspection, revealing hidden traffic patterns. This solution reduces the time for analysing the raw data and the focus goes to the already filtered data.
Keywords:
python, analysis, monitoring, network traffic.
Download
18 downloads since 15.6.2026 г.
NA