Erik and @jonaslβs Network Fingerprinting talk is now online. It covers #JA4 and #JARM by John Althouse, @lcamtufβs #p0f and Eric Kollmannβs Satori.
https://www.youtube.com/watch?v=1_VbYp4Zyno&t=19s
#p0f is a passive fingerprinter.
p0f is a tool that passively looks through an interface's packets to see if any contain special information. p0f can gather details on the operating system used, uptime, links, browser, and raw details for further processing if desired. Since p0f is passive it can be used without much fuss, and can't be detected outside of the fingerprinting server.
Website ποΈ: https://lcamtuf.coredump.cx/p0f3/
apt π¦οΈ: p0f