#1Behavioral anomaly detection, outlier analysis, UEBA, and statistical threat detection tools.
Kitploit recommended

Streaming machine learning library for incremental learning on data streams, providing online estimators, drift and anomaly detection, pipelines,…

Very fast DDoS sensor with sFlow/Netflow/IPFIX/SPAN support

Canarytokens helps track activity and actions on your network

Develop, validate, and publish SIEM detection rules for Elastic Security, with Python CLI tooling, KQL parsing, Kibana integration, and packaged…

Scalable Python library for time series analysis via matrix profiles, enabling motif discovery, anomaly detection, semantic segmentation, and…

Self-hostable AI SOC that fuses security alerts, auto-triages via agentic AI, runs MITRE ATT&CK investigations, and logs every agent decision in a…

Microsoft Threat Intelligence Security Tools

IOC and YARA-based scanner for detecting indicators of compromise via file name regex, YARA signatures, hash matching, and C2 back-connect checks on…

Runtime application self-protection engine that hooks into application servers to monitor and block malicious database queries, file operations, and…

WiFi, Bluetooth and Ethernet Threat Detection.

Collection of KQL queries

The StackRox Kubernetes Security Platform performs a risk analysis of the container environment, delivers visibility and runtime alerts, and provides…

Open-source security framework for real-time event tracking, threat detection, and risk scoring. Monitors user behavior, detects fraud, bot attacks,…

A machine learning toolkit for log-based anomaly detection [ISSRE'16]

List of tools & datasets for anomaly detection on time-series data.

Algorithms for outlier, adversarial and drift detection

Real-time monitoring and slowlog analysis for Valkey and Redis databases with anomaly detection, ACL auditing, and Prometheus metrics export.

Multi-engine Linux malware scanner with five detection stages (MD5, HEX pattern, YARA, ClamAV, statistical), real-time inotify monitoring,…