Skip to main content

📡 Bare-Bones Packet Auditor v1.1.3

Philosophy: Simple • Practical • Reliable

A lightweight command-line network packet auditing tool built with Python and Scapy. It captures live network traffic and displays concise, human-readable metadata in real time.


📖 Introduction

Bare-Bones Packet Auditor is designed for developers, students, and security enthusiasts who need a minimal yet effective way to observe network traffic.

It prioritizes:

  • clarity
  • performance
  • usability

No unnecessary complexity — just useful output.


📚 Table of Contents


⚙️ Installation

Option 1: Install via pip (recommended)

pip install packet-auditor

Option 2: Clone and run manually

git clone https://github.com/foxhackerzdevs/packet-auditor.git
cd packet-auditor
pip install .

⚠️ Root/Admin privileges are required for packet sniffing.


🚀 Usage

After pip install (CLI command)

sudo packet-audit

Windows

Run PowerShell or CMD as Administrator:

packet-audit

Options

Option Description
-i, --iface Network interface to sniff on (default: system default interface)
-f, --filter BPF filter string (e.g., "tcp port 443")
-o, --output Save output to a log file
-q, --quiet Disable terminal packet output
-l, --list-interfaces List available interfaces and exit
--version Display tool version

✨ Features

  • 📦 Real-time packet monitoring
  • 🌐 IPv4 and IPv6 support
  • 🔍 TCP, UDP, ICMP detection
  • 🧠 TCP flag inspection
  • ⚡ Lightweight (store=0, no memory buildup)
  • 🎯 BPF filtering support
  • 📁 Optional logging to file
  • 🤫 Quiet mode for background operation
  • 🖥️ Clean, aligned terminal output
  • 🪟 Windows + Npcap support

📦 Dependencies

Defined in pyproject.toml:

  • scapy >= 2.5.0

🔧 Configuration

No configuration file required. Everything is controlled via CLI arguments.


📊 Output Format

[HH:MM:SS] #COUNT SOURCE_IP -> DESTINATION_IP | PROTOCOL INFO | SIZE bytes

Example

[22:39:44] #42     10.247.195.51 -> 20.189.173.2 | TCP 55679->443 [PA] | 498 bytes

🧪 Examples

# Monitor all traffic
sudo packet-audit

# Specific interface
sudo packet-audit -i eth0

# Filtered traffic
sudo packet-audit -f "tcp port 80"

# Log to file
sudo packet-audit -o packets.log

# Quiet background logging
sudo packet-audit -q -o packets.log

# Combined usage
sudo packet-audit -i wlan0 -f "host 8.8.8.8" -o log.txt

# List interfaces
packet-audit -l

🛠️ Troubleshooting

❌ Permission Denied

Linux/macOS:

sudo packet-audit

Windows:

  • Run PowerShell or CMD as Administrator

❌ Interface Not Found

packet-audit -l

❌ No Packets Captured

Possible causes:

  • Wrong interface
  • Overly strict filter
  • No active network traffic

❌ Android / Termux Not Supported

Packet sniffing is not supported on Android due to OS limitations in Scapy.

Use Linux, macOS, or Windows instead.


❌ Windows Capture Issues

Install Npcap:

During installation, enable:

  • Install Npcap in WinPcap API-compatible Mode

👥 Contributors


📄 License

This project is licensed under the MIT License.


💡 Notes

  • Designed for learning, debugging, and lightweight monitoring
  • Not a full intrusion detection system
  • Use only on networks you own or are authorized to monitor

🧠 Philosophy

If a tool needs a long manual, it’s already too complex.

Metadata

Release files for packet-auditor 1.1.3

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for packet-auditor 1.1.3
File Size Uploaded
packet_auditor-1.1.3.tar.gz 6.6 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for packet-auditor 1.1.3
File Interpreter ABI Platform
packet_auditor-1.1.3-py3-none-any.whl Python 3 none any Details

Total release size: 13.6 kB

Release files / packet_auditor-1.1.3.tar.gz

Download URL packet_auditor-1.1.3.tar.gz
Size 6.6 kB
Tags Source
SHA-256 checksum
How to use checksums
3c22eb919d7fe12fdccec832fb8128490b977370847d1d7d6eeb732fd6002181
BLAKE2b-256 checksum
How to use checksums
3479ee44fef6430248038a63988fd15d703f2d2eed2e72b6e08e0c97c1b2e62f
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/6.2.0 CPython/3.13.12

Release files / packet_auditor-1.1.3-py3-none-any.whl

Download URL packet_auditor-1.1.3-py3-none-any.whl
Size 7.0 kB
Tags Python 3
SHA-256 checksum
How to use checksums
75ccb0daff4a2259216f4271959157d8bb5af274fd4f6a7fec146337e52f1af2
BLAKE2b-256 checksum
How to use checksums
58ec1c790ea966adebb4c3e1cf9acea1921fa919aa6c515055838d03180831ff
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/6.2.0 CPython/3.13.12

Release history Release notifications | RSS feed

This release

1.1.3 This release

2 release files

1.1.2

2 release files

1.1.1

2 release files

1.1.0

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page