
Dashboards-Splunk-DNS-Hunting-Beaconing
DNS Dashboard for hunting and identifying beaconing

DNS Dashboard for hunting and identifying beaconing

A lightweight, real-time Security Information and Event Management (SIEM) dashboard built using Streamlit. It collects system logs, detects USB and…

Single-host runtime-security dashboard on eBPF — Go agent + SvelteKit. Live process tree, network map, and rule-based alerts for plain Linux hosts.

GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through your browser.

Semantic Observability for UNIX Systems - A lightweight C-based system prober with AI-powered analysis

Open-source IoT Platform - Device management, data collection, processing and visualization.

Real-time monitoring and slowlog analysis for Valkey and Redis databases with anomaly detection, ACL auditing, and Prometheus metrics export.

A package for capturing and analyzing network flow data and intraflow data, for network research, forensics, and security monitoring.

PETriage: A symbol-unified PE file reader for triage, built for multi-platform and multi-interface use.

AI-driven endpoint governance platform that monitors software usage, applies deterministic policy-based risk classification, and generates structured…

Collection of KQL queries


WiFi, Bluetooth and Ethernet Intrusion Detection.

Suricata rules for network anomaly detection

A tool for malicious behavior detection in IoT devices

A Zeek package for the passive detection of "Ripple20" vulnerabilities in the Treck TCP/IP stack.

Runtime security gateway for AI agents: cryptographically attests tool calls, enforces policies, sandboxes execution, and logs tamper-evident audit…