TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

p0f: TCP Packet Fingerprinting

140 pointsby btdmasterover 2 years ago

12 comments

lossoloover 2 years ago
I remember when I was in college and we were doing work about passive OS fingerprinting and we used p0f, Vista was a new OS back then and we fingerprinted it successfully before p0f got its own signatures, it was so cool. It was around 15 years ago, my god time flies so fast.
评论 #32880935 未加载
bediger4000over 2 years ago
This is p0f 3.09b. Does anybody know of updated fingerprint files?<p>The fingerprint file dates to 2014, well before Windows 10, and about Linux kernel 3.12. There&#x27;s lots of things it just doesn&#x27;t identify.
评论 #32883509 未加载
binkHNover 2 years ago
I use this. It works, but it&#x27;s dated and doesn&#x27;t work consistently enough that it should be relied upon in any capacity.
评论 #32884585 未加载
iszomerover 2 years ago
iirc, one of lcamtuf&#x27;s works. His book Silence on the Wire is still one of my favorite reads of all time.
account-5over 2 years ago
How would this fair now against encryption? Being that&#x27;s it&#x27;s from 2014.
评论 #32880819 未加载
评论 #32880752 未加载
anfractuosityover 2 years ago
I assume p0f doesn&#x27;t do TCP timestamp clock skew fingerprinting out of curiosity too? Curious if there are any OSS tools for that.
评论 #32882083 未加载
评论 #32880520 未加载
nykolaszover 2 years ago
Great tool, but not maintained anymore, unfortunatelly.
dilawarover 2 years ago
Too bad it doesn&#x27;t work on Windows out of thr box without cygwin&#x2F;msys trickery. The lippcap doesnt have an open source alternative on windows. winpcap is almost dead and npcap is not free to use.
评论 #32880140 未加载
bArrayover 2 years ago
Is there a UDP equivalent to passively monitor and fingerprint? I&#x27;m guessing not, but would be interested to hear if there is.
gerdesjover 2 years ago
&quot;Copyright (C) 2000-2014 by Michal Zalewski&quot;<p>2014
princesover 2 years ago
Plis packet data
princesover 2 years ago
Pliss packet data