NetHtop++ – Real-time network socket tracker that catches ghost sockets
18 hours ago
- #terminal-tool
- #real-time-monitoring
- #network-security
- NetHtop++ is a real-time network inspection and response console for operators, analysts, and security teams.
- Inspired by htop, it combines multiple network tools into a single terminal-native interface.
- Features include live socket inspection, ghost socket detection, one-key tracing, targeted tcpdump, and more.
- Requires sudo privileges for actions like killing sockets or adding pf rules.
- Includes playbooks and countermeasures for ghost socket recon and response.
- Built with Python 3.7+ and requires libraries like psutil, scapy, netifaces, and curses.
- Best used on macOS or Linux with a terminal width of at least 110 characters.
- Installation involves cloning the GitHub repo and installing dependencies.
- No Windows support planned; users are encouraged to fork the project for Windows.