p0f is a versatile passive OS fingerprinting and masquerade detection utility, to be used for evidence or information gathering on servers, firewalls, IDSes, and honeypots, for pen-testing, or just for the fun of it. It is a complete rewrite of p0f version 1 that used to be maintained by William Stearns.
| Tags | Security Networking Firewalls Monitoring Systems Administration Utilities |
|---|---|
| Licenses | LGPL |
| Operating Systems | POSIX AIX Windows Windows Mac OS X BSD Linux Solaris Unix |
| Implementation | C |
Recent releases


Changes: New fingerprints were added. Diagnostic and statistics query mode and utilities were contributed. Other minor fixes were made.


Changes: New fingerprints were added, including ones for Windows Vista. Support for older architectures was improved. The plugin query capability was improved. Minor bugfixes were made.


Changes: New signatures, better logging, and various minor improvements. Fixes to compile on newer Linux distributions. A Cygwin port.


Changes: Established connection fingerprinting (ACK mode) is now supported. 802.1Q VLAN support had been added. New fingerprints are available. Minor other tweaks have been added.


Changes: This is a new stable release. More signatures were added. The documentation was updated. Timestamp reporting was enhanced. Various other bugfixes were made. A PDA port was created.