Comparison of packet analyzers explained

The following tables compare general and technical information for several packet analyzer software utilities, also known as network analyzers or packet sniffers. Please see the individual products' articles for further information.

General information

Basic general information about the software—creator/company, license/price, etc.

Creatordata-sort-type="number"Latest releaseUser interfaceSoftware licensedata-sort-type="currency"Cost
Allegro Network MultimeterAllegro PacketsJuly 20, 2023 / v4.0.4web GUINon-free, price on request, depending on device and extensions
Cain and AbelMassimiliano Montoro / 4.9.56GUI
CapsaColasoft / 11.1[1] GUI[2]
CarnivoreFederal Bureau of InvestigationN/A
Charles Web Debugging ProxyKarl van Randow / 4.1.4GUI$30–$50 (Free Trial)
Clarified AnalyzerClarified NetworksGUI
Clusterpoint Network Traffic Surveillance SystemClusterpointweb GUI
CommViewTamoSoft / 6.5 Build 770GUI
dSniffDug Song / 2.3[3] CLI
EtherApeJuan Toledo / 0.9.18[4] GUI
EttercapALoR and NaGA / 0.8.3.1-Bertillon[5] Both
FiddlerEric Lawrence / Telerik / 5.0.20194[6] GUI
justnifferThe Justniffer team / 0.5.15[7] CLI
KismetMike Kershaw (dragorn) / 2020-04-R3[8] CLI
Microsoft Message AnalyzerMicrosoft / 1.4[9] GUI
Microsoft Network MonitorMicrosoft / 3.4GUI
netsniff-ngDaniel Borkmann / 0.6.2CLI
ngrepJordan Ritter / 1.47CLI
ObserverViavi Solutions (formerly Network Instruments)GUI
OmniPeek (formerly AiroPeek, EtherPeek)LiveAction (formerly Savvius, WildPackets) / 11.1GUI[10]
SnifferNetscout (formerly Network General)2013[11] GUIProprietaryNon-free
SteelCentral Transaction AnalyzerOPNET Technologies/Riverbed Technology / 17.0.T-PL1[12] GUI
snoopSun Microsystems / Solaris 10CLI
tcpdumpThe Tcpdump team / 4.99.4[13] CLI
Wireshark (formerly Ethereal)The Wireshark team / 4.0.6[14] Both
XplicoThe Xplico team / 1.2.2[15] Both

Operating system support

The utilities can run on these operating systems.

ClientMicrosoft WindowsmacOSLinuxBSDsSolarisOther
Cain and Abel
Capsa Free Edition
Carnivore
Charles Web Debugging Proxy
CommView
dSniff
EtherApe
Ettercap
justniffer
Kismet
LanmeterFluke proprietary hardware
netsniff-ng
ngrepAIX, BeOS, HP-UX, IRIX, Tru64 UNIX
Microsoft Network Monitor
OmniPeek (formerly AiroPeek, EtherPeek)
snoop
tcpdump (WinDump)AIX, HP-UX, IRIX, Tru64 UNIX
Wireshark (formerly Ethereal)AIX, HP-UX, IRIX, Tru64 UNIX
Xplico

Notes and References

  1. Colasoft Announces Release of Capsa Network Analyzer v11.1 with Enhanced Usability. April 25, 2018.
  2. Web site: Capsa Enterprise Edition & Standard Edition & Free Edition – Colasoft. https://archive.today/20130120010119/http://www.colasoft.com/capsa/editions.php. dead. January 20, 2013.
  3. Web site: CHANGES. monkey.org.
  4. Web site: EtherApe, a graphical network monitor. etherape.sourceforge.net. March 22, 2020.
  5. Web site: Releases · Ettercap. ettercap-project.org. March 22, 2020.
  6. Web site: Fiddler Release History . Telerik . October 3, 2019.
  7. Web site: justniffer - Browse Files at SourceForge.net. SourceForge. September 8, 2022.
  8. Web site: Kismet. kismetwireless.net. May 28, 2020.
  9. Web site: Download Microsoft Message Analyzer from Official Microsoft Download Center. . https://web.archive.org/web/20190803035049/https://www.microsoft.com/en-us/download/details.aspx?id=44226. August 3, 2019 . dead.
  10. Web site: store.savvius.com. June 3, 2016. https://web.archive.org/web/20160813115749/https://store.savvius.com/index.php. August 13, 2016. dead.
  11. Book: Netscout. 2013 Netscout Sniffer Portable. 2013.
  12. Web site: SteelCentral Transaction Analyzer.
  13. Web site: Tcpdump/Libpcap public repository. tcpdump.org. June 12, 2023.
  14. Web site: Wireshark 4.0.6 Released. May 24, 2023. June 12, 2023.
  15. Web site: Xplico – Xplico 1.2.2.