
0xGUARD
Simple Anti-cheat library for applications that use C++ on windows. #PastedProtection

Simple Anti-cheat library for applications that use C++ on windows. #PastedProtection

Enumerate various traits from Windows processes as an aid to threat hunting

The Console Monitor Driver is a KMDF kernel-mode filter driver that captures certain Fast I/O operations (input and output) that is sent to or from…

A Microsoft Windows service to provide telemetry on Windows executable memory page changes to facilitate threat detection

A Bro package to identify connections that are bursting (lots of data and transferring quickly).

Fingerprint SSH clients and servers.

Zeek package for tracking long connections to report them before they have completed.

A real-time traffic monitoring tool that detects and displays network traffic volume per IP address to identify potential DDoS attacks.

Detects phi-structured C2 beacons that evade RITA and standard regularity-based detectors

Asymmetric defense against adversarial AI agents. VeilGate evaluates each incoming request, redirects suspected agents into a per-IP-consistent…

Network monitoring tool that maps process-to-network connections, identifies cloud providers, and detects beaconing activity

Detection of rootkit file hiding activities through analysis of shifts in kernel function execution times.

Monitor large transactions on Polymarket and Kalshi prediction markets with anomaly detection

Open-source EDR for AI agents. Monitor processes, files, network, and behavior of autonomous AI agents.

Forensic intelligence platform that analyzes files, correlates threat indicators, maps behavior to MITRE ATT&CK, and generates actionable security…

Sigma detection rules for AI agent security monitoring

A modular, skill-based autonomous Security Operations Center (SOC) agent that monitors OpenSearch/Elasticsearch data, builds RAG-based behavioral…