Free Wireshark AlternativesTop Network Analyzers & Network Monitors like Wireshark

The best free alternative to Wireshark is tcpdump, which is also Open Source. If that doesn't suit you, our users have ranked more than 50 alternatives to Wireshark and many of them is free so hopefully you can find a suitable replacement. Other interesting free alternatives to Wireshark are Intercepter-NG, NetworkMiner, Ettercap and PCAPdroid.

filter to find the best alternatives

Wireshark alternatives are mainly Network Analyzers, but if you're looking for Network Monitors or HTTP(S) Debuggers you can filter on that. Other popular filters include Android, iPhone, Mac, Linux, Open Source, iPhone + Network Monitoring and iPhone + Network Analyzer. You can also filter by region, for example EU-based alternatives if you prefer software developed in the European Union. These are just examples - use the filter bar below to find more specific alternatives to Wireshark.
Copy a direct link to this comment to your clipboard
Wireshark alternatives page was last updated

Alternatives list

  1. tcpdump icon
     60 likes

    tcpdump is a common packet analyzer that runs under the command line. It allows the user to intercept and display TCP/IP and other packets being transmitted or received over a network to which the computer is attached.

    29 tcpdump alternatives

    Cost / License

    • Free
    • Open Source

    Application type

    Platforms

    • Mac
    • Windows
    • Linux
    • BSD
     
    |
    1
  2. Intercepter-NG icon
     16 likes

    Intercepter-NG is a multifunctional network toolkit for various types of IT specialists.

    Cost / License

    • Free
    • Proprietary

    Alerts

    • Discontinued
    • Warning

    Platforms

    • Mac
    • Windows
    • Linux
    • Android
    • iPhone
    • Android Tablet
    • BSD
    • iPad
     
  3. NetworkMiner icon
     19 likes

    NetworkMiner is a Network Forensic Analysis Tool (NFAT) for Windows. NetworkMiner can extract transmitted files and certificates from PCAP files containing HTTP, FTP, SMB, SMB2, TFTP and several other protocols.

    39 NetworkMiner alternatives

    Cost / License

    Platforms

    • Windows
    • Linux
     
  4. Ettercap icon
     18 likes

    Ettercap is a suite for man in the middle attacks on LAN. It features sniffing of live connections, content filtering on the fly and many other interesting tricks.

    Cost / License

    Application type

    Platforms

    • Mac
    • Windows
    • Linux
     
  5. PCAPdroid icon
     5 likes

    PCAPdroid is an android app to capture the phone traffic and analyze it remotely (e.g. via Wireshark). The traffic can be easily downloaded from a remote device thanks to the integrated HTTP server, or streamed to a remote UDP receiver.

    45 PCAPdroid alternatives

    Cost / License

    Platforms

    • Android
    • F-Droid
     
  6. MicroOLAP TCPDUMP is a clone of tcpdump , the most used network sniffer/analyzer for UNIX, compiled with the original tcpdump code (http://www.tcpdump.org/), and MicroOLAP Packet Sniffer SDK.

    Cost / License

    • Freemium
    • Proprietary

    Application type

    Platforms

    • Windows
     
  7. Termshark icon
     Like

    If you're debugging on a remote machine with a large pcap and no desire to scp it back to your desktop, termshark can help!

    Cost / License

    • Free
    • Open Source (MIT)

    Platforms

    • Mac
    • Windows
    • Linux
    • BSD
     
  8. Sysdig icon
     12 likes

    Sysdig is open source, system-level exploration: capture system state and activity from a running Linux instance, then save, filter and analyze. Think of it as strace + tcpdump + lsof + awesome sauce.

    Cost / License

    • Free
    • Open Source

    Platforms

    • Mac
    • Windows
    • Linux
     
  9. RawCap icon
     1 like

    Windows command-line sniffer for network activity, using raw sockets.

    11 RawCap alternatives

    Cost / License

    • Free
    • Proprietary

    Platforms

    • Windows
     
  10. Mojo Packets icon
     2 likes

    Mojo Packets™ is web based tool that simplifies trace based analysis and troubleshooting of connectivity/performance issues observed in Wi-Fi (IEEE 802.11) environments.

    Cost / License

    • Free
    • Proprietary

    Platforms

    • Mac
    • Windows
    • Linux
    • Online
    • Wireshark
     
    |
    1
  11.  6 likes

    Scapy is a powerful interactive packet manipulation program. It is able to forge or decode packets of a wide number of protocols, send them on the wire, capture them, match requests and replies, and much more.

    Cost / License

    Platforms

    • Mac
    • Windows
    • Linux
     
  12.  21 likes

    NetHogs is a small 'net top' tool. Instead of breaking the traffic down per protocol or per subnet, like most tools do, it groups bandwidth by process.

    26 Nethogs alternatives

    Cost / License

    • Free
    • Open Source

    Platforms

    • Linux
    • Xfce
     
12 of 48 Wireshark alternatives