Awesome Open Source
Awesome Open Source


Polymorph is a tool that facilitates the modification of network traffic on the fly by allowing the execution of Python code on network packets that are intercepted in real time.

This framework can be used to modify in real time network packets that implement any publicly specified network protocol. Additionally, it can be used to modify privately specified network protocols by creating custom abstractions and fields.


Polymorph is specially designed to be installed and run on a Linux operating system. Before installing the framework, the following requirements must be installed:

apt-get install build-essential python-dev libnetfilter-queue-dev tshark tcpdump python3-pip wireshark git

After the installation of the dependencies, the framework itself can be installed with the Python pip package manager in the following way:

pip3 install git+
pip3 install polymorph

* More info: Issue 8

Using Polymorph

Below you can find some resources and practical examples with which you can learn how Polymorph works. I recommend that you read the articles in the following order:

  1. Setting up the enviroment
  2. Case Study. Part 1: How does Polymorph work? (Modifying ICMP on the fly)
  3. Case Study. Part 2: Global variables (Modifying ICMP on the fly)
  4. Case Study. Part 3: Structs (Modifying MQTT on the fly)
  5. Case study. Part 4: Creating custom layers and fields (Modifying MQTT on the fly)

Important Release Notes



This program is published with the aim of being used for educational purposes and to help improve the security of the systems. I am not responsible for the misuse of this project.


[email protected]

Get A Weekly Email With Trending Projects For These Topics
No Spam. Unsubscribe easily at any time.
Python (1,147,256
Framework (6,781
Tool (6,495
Network (3,730
Real Time (2,764
Protocol (1,283
Packets (330
Manipulation (185
Air (130
Modification (98
Intercept (38
Crafting (30
Polymorph (7
Related Projects