
AiSOC
Open-source AI-powered Security Operations Center — alert fusion, purple-team drills, agent-assisted triage, MITRE ATT&CK investigation.…

Open-source AI-powered Security Operations Center — alert fusion, purple-team drills, agent-assisted triage, MITRE ATT&CK investigation.…

Linux system-call monitor using ptrace to trace file, process, network, and memory activity, with namespace isolation and machine learning…

Scalable Python library for time series analysis via matrix profiles, enabling motif discovery, anomaly detection, semantic segmentation, and…

A python library for user-friendly forecasting and anomaly detection on time series.

GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through your browser.

Passive cross-protocol attack detection tool for mobile core networks. Correlates SS7/MAP, Diameter S6a, and GTPv2-C events to detect location…

Runtime security gateway for AI agents: cryptographically attests tool calls, enforces policies, sandboxes execution, and logs tamper-evident audit…

This tool parses log data and allows to define analysis pipelines for anomaly detection. It was designed to run the analysis with limited resources…

PETriage: A symbol-unified PE file reader for triage, built for multi-platform and multi-interface use.

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…


Automatic extraction of relevant features from time series:

A real-time traffic monitoring tool that detects and displays network traffic volume per IP address to identify potential DDoS attacks.


Network monitoring tool that maps process-to-network connections, identifies cloud providers, and detects beaconing activity

NOVA - Claude Code Protection System against prompt injection attacks

Deep Learning models for network traffic classification

Lightweight native Windows memory scanner for AV/EDR platforms, detecting suspicious mapped images and manual DLL injection techniques by IAT thunk