This repository is a Spicy protocol analyzer for WireGuard. The goal is to be able to identify and analyze WireGuard traffic at wire speed with Zeek.
The analyzer is based on WireGuard’s whitepaper.
Setup development environment
Spicy must be installed. Reference the Installation documents for additional details on setup.
Clone the repository
git clone https://github.com/theparanoids/spicy-noise cd spicy-noise
Zeek with the Spicy plugin install can load analyzer…