
maltrail
Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

DNS Proxy that is simple and fast with not so simple features. Focused on routed DNS forwarding, filtering and parental control.

Very fast DDoS sensor with sFlow/Netflow/IPFIX/SPAN support

Advanced detection of port scanning, DoS and malware attacks using Machine Learning techniques

A package for capturing and analyzing network flow data and intraflow data, for network research, forensics, and security monitoring.

Detects network covert channels using Shannon entropy and Sarle's bimodality coefficient to flag encrypted ICMP/TCP payload exfiltration and…


SQL powered operating system instrumentation, monitoring, and analytics.

Offline-first network investigation and response platform for Windows. Turns a pcap or live capture into a full forensic verdict — attack story,…

Web-based Traffic and Cybersecurity Network Traffic Monitoring

Monitor your local neighbourhood's bluetooth activity

NFStream: a Flexible Network Data Analysis Framework.

Network anomaly detector that monitors raw packets to identify port scanning activity in real time, with flexible sniffing duration controls and live…

Microsoft Threat Intelligence Security Tools

Graph-based threat detection system using inexact graph vector matching to compare threat graphs with CTI-derived attack query graphs for automated…

Analysis and Representation of Graphs of Suspicious Operations (Analyse et Représentation des Graphes des Opérations Suspectes)

AI-based, context-driven network device ranking