Nytro Posted January 4, 2017 Report Posted January 4, 2017 What is it? IVRE (Instrument de veille sur les réseaux extérieurs) or DRUNK (Dynamic Recon of UNKnown networks) is a network recon framework, including tools for passive recon (flow analytics relying onBro, Argus, Nfdump, fingerprint analytics based on Bro and p0f and active recon (IVRE uses Nmap to run scans, can use ZMap as a pre-scanner; IVRE can also import XML output from Nmap andMasscan). The advertising slogans are: (in French): IVRE, il scanne Internet. (in English): Know the networks, get DRUNK! The names IVRE and DRUNK have been chosen as a tribute to "Le Taullier". Overview Have a look at the project homepage, and at the screenshot gallery for an overview of the Web interface. We have a demonstration instance, just contact us to get an access. A few blog posts have been written to show some features of IVRE. Link: https://github.com/cea-sec/ivre Quote