Skip to main content

For any technical and/or maintenance information, please kindly refer to the Official Documentation.

The PyPCAPKit project is an open source Python program focus on network packet parsing and analysis, which works as a comprehensive PCAP file extraction, construction and analysis library.

The whole project supports Python 3.6 or later.

About

PyPCAPKit is a comprehensive Python-native network packet analysis library, with DictDumper as its formatted output dumper.

Unlike popular PCAP file extractors, such as Scapy, DPKT, PyShark, and etc, pcapkit is designed to be much more comprehensive, which means it is able to provide more detailed information about the packet, as well as a more Pythonic interface for users to interact with.

Module Structure

In pcapkit, all files can be described as following eight parts.

  • Interface (pcapkit.interface)

    User interface for the pcapkit library, which standardises and simplifies the usage of this library.

  • Foundation (pcapkit.foundation)

    Synthesises file I/O and protocol analysis, coordinates information exchange in all network layers, as well as provides the foundamental functions for pcapkit.

  • Protocols (pcapkit.protocols)

    Collection of all protocol family, with detailed implementation and methods.

  • Utilities (pcapkit.utilities)

    Auxiliary functions and tools for pcapkit.

  • CoreKit (pcapkit.corekit)

    Core utilities for pcapkit implementation, mainly for internal data structure and processing.

  • ToolKit (pcapkit.toolkit)

    Auxiliary tools for pcapkit to support the multiple extraction engines with a unified interface.

  • DumpKit (pcapkit.dumpkit)

    File output formatters for pcapkit.

  • Constants (pcapkit.const)

    Constant enumerations used in pcapkit for protocol family extraction and representation.

Engine Comparison

Due to the general overhead of pcapkit, its extraction procedure takes around 0.2 milliseconds per packet, which is already impressive but not enough comparing to other popular extration engines availbale on the market, given the fact that pcapkit is a comprehensive packet processing module.

Additionally, pcapkit introduced alternative extractionengines to accelerate this procedure. By now pcapkit supports Scapy, DPKT, and PyShark.

Test Environment

Operating System

macOS Ventura 13.4.1

Chip

Apple M2 Pro

Memory

16 GB

Test Results

Engine

Performance (ms per packet)

dpkt

0.010390_056723

scapy

0.091690_233567

pcapkit

0.200390_390390

pyshark

24.682185_018351

Installation

Simply run the following to install the current version from PyPI:

pip install pypcapkit

Or install the latest version from the gi repository:

git clone https://github.com/JarryShaw/PyPCAPKit.git
cd pypcapkit
pip install -e .
# and to update at any time
git pull

And since pcapkit supports various extraction engines, and extensive plug-in functions, you may want to install the optional ones:

# for DPKT only
pip install pypcapkit[DPKT]
# for Scapy only
pip install pypcapkit[Scapy]
# for PyShark only
pip install pypcapkit[PyShark]
# and to install all the optional packages
pip install pypcapkit[all]
# or to do this explicitly
pip install pypcapkit dpkt scapy pyshark

For CLI usage, you will need to install the optional packages:

pip install pypcapkit[cli]
# or explicitly...
pip install pypcapkit emoji

Metadata

Release files for pypcapkit 1.3.5.post17

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for pypcapkit 1.3.5.post17
File Size Uploaded
pypcapkit-1.3.5.post17.tar.gz 668.8 kB Details

Built distributions (wheels)

Table of built distributions (wheels) for pypcapkit 1.3.5.post17
File
pypcapkit-1.3.5.post17-pp310-none-any.whl PyPy 3.10 none any Details
pypcapkit-1.3.5.post17-pp39-none-any.whl PyPy 3.9 none any Details
pypcapkit-1.3.5.post17-pp38-none-any.whl PyPy 3.8 none any Details
pypcapkit-1.3.5.post17-cp313-none-any.whl CPython 3.13 none any Details
pypcapkit-1.3.5.post17-cp312-none-any.whl CPython 3.12 none any Details
pypcapkit-1.3.5.post17-cp310-none-any.whl CPython 3.10 none any Details
pypcapkit-1.3.5.post17-cp39-none-any.whl CPython 3.9 none any Details

Total release size: 7.5 MB

Release files / pypcapkit-1.3.5.post17.tar.gz

Download URL pypcapkit-1.3.5.post17.tar.gz
Size 668.8 kB
Tags Source
SHA-256 checksum
How to use checksums
1f9ba2f77486652ebc314c1c0fc973ee826515f793d592f25c198685735c9e72
BLAKE2b-256 checksum
How to use checksums
771efcec2892a18c10dc8de4fcb1805e65b2b9962b6779076b570fb943b8dc3b
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.12.9

Release files / pypcapkit-1.3.5.post17-pp310-none-any.whl

Download URL pypcapkit-1.3.5.post17-pp310-none-any.whl
Size 973.4 kB
Tags PyPy 3.10
SHA-256 checksum
How to use checksums
23ac828107263f327269685a1f3fcc312a18dcdf2d39f2f506bf16ddbd545af2
BLAKE2b-256 checksum
How to use checksums
ec377c2cfcee307033d35020de66b898dc61ed75945bf6a69e36d448361ce398
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.12.9

Release files / pypcapkit-1.3.5.post17-pp39-none-any.whl

Download URL pypcapkit-1.3.5.post17-pp39-none-any.whl
Size 973.4 kB
Tags PyPy 3.9
SHA-256 checksum
How to use checksums
b0b200d398e28e4c8c5ef89f18c2f1cfb2f0786fb1ceb983b112f777be4674b6
BLAKE2b-256 checksum
How to use checksums
868d2fceffdfc38ec97d515b67f5f7133b50306737e62177c40280e20ea26996
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.12.9

Release files / pypcapkit-1.3.5.post17-pp38-none-any.whl

Download URL pypcapkit-1.3.5.post17-pp38-none-any.whl
Size 973.4 kB
Tags PyPy 3.8
SHA-256 checksum
How to use checksums
6a17297d47eb4d78e77e453325d0249ca29df4f84fb39a1b7a5f793c99e759ac
BLAKE2b-256 checksum
How to use checksums
e9d16445b795ca6d21379da831a0c871909c263d46c12c74b6c145742227b416
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.12.9

Release files / pypcapkit-1.3.5.post17-cp313-none-any.whl

Download URL pypcapkit-1.3.5.post17-cp313-none-any.whl
Size 973.4 kB
Tags CPython 3.13
SHA-256 checksum
How to use checksums
54bc61dc6cb3d8aa076a44033aa5f57e0f6db9676fa93fb26b287b3401ddaba0
BLAKE2b-256 checksum
How to use checksums
3dafdedb99d33760a176a626b4e02ea4c69dd856b8cc2bd8d18ed798f0b1bf52
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.12.9

Release files / pypcapkit-1.3.5.post17-cp312-none-any.whl

Download URL pypcapkit-1.3.5.post17-cp312-none-any.whl
Size 973.4 kB
Tags CPython 3.12
SHA-256 checksum
How to use checksums
175dca638147cb185f6e57643b2d48abf31e3e24287af220185d8517a86945e5
BLAKE2b-256 checksum
How to use checksums
f6f5cc9cc3c01ad7c5149ae16f0e153db2a6cc9373f5bf69b4d820a3628ef0b5
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.12.9

Release files / pypcapkit-1.3.5.post17-cp310-none-any.whl

Download URL pypcapkit-1.3.5.post17-cp310-none-any.whl
Size 973.4 kB
Tags CPython 3.10
SHA-256 checksum
How to use checksums
fa774a3190f852749846b8f0d2eee064851b90b2513dfe8150bc77348a0a76de
BLAKE2b-256 checksum
How to use checksums
62d27f5609fa6f366ea797d1d5c7fbcc94c9b98c063b9dc2a053d226f697d8f2
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.12.9

Release files / pypcapkit-1.3.5.post17-cp39-none-any.whl

Download URL pypcapkit-1.3.5.post17-cp39-none-any.whl
Size 973.4 kB
Tags CPython 3.9
SHA-256 checksum
How to use checksums
9c3c915687936ecaaf5642e4107186cb41eaa945daba5cb69d88973395e45744
BLAKE2b-256 checksum
How to use checksums
d53c3d9937338333ea396f4b05973b107e3c64e8d7fc2a31d29f1801b6661823
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.12.9

Release history Release notifications | RSS feed

1.4.1

8 release files

1.4.0

8 release files

This release

1.3.5.post17 This release

8 release files

1.3.5

8 release files

1.3.4

9 release files

1.3.3

7 release files

1.3.1

6 release files

1.3.0

7 release files

1.2.2

6 release files

1.2.1

7 release files

1.2.0

7 release files

1.1.1

7 release files

1.1.0

7 release files

1.0.3

6 release files

1.0.2

5 release files

1.0.1

2 release files

1.0.0

2 release files

0.16.2

1 release file

0.16.1

1 release file

0.16.0

1 release file

0.15.5

2 release files

0.15.4

2 release files

0.15.3

2 release files

0.15.2

2 release files

0.15.1

2 release files

0.12.9

3 release files

0.12.8

3 release files

0.12.7

3 release files

0.12.6

3 release files

0.12.5

2 release files

0.12.2

2 release files

0.12.1

2 release files

0.12.0

2 release files

0.11.3

2 release files

0.11.2

2 release files

0.10.2

2 release files

0.10.1

2 release files

0.10.0

2 release files

0.9.10

2 release files

0.9.9

2 release files

0.9.8

2 release files

0.9.7

2 release files

0.9.6

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page