
maltrail
Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

LSTM-based classifier for detecting domain generation algorithm (DGA) domains, with Keras implementations of neural network and bigram models for DNS…

Programmable packet inspection engine with NIDS, DNS classification, frequency analysis, and auto-regex generation. Supports Python/Ruby/Java/Lua…

DNS Dashboard for hunting and identifying beaconing

Open-source network IDS/IPS/NSM engine for real-time traffic inspection, intrusion detection and prevention, protocol analysis, and rule-based threat…

Web-based Traffic and Cybersecurity Network Traffic Monitoring

A package for capturing and analyzing network flow data and intraflow data, for network research, forensics, and security monitoring.


Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

AI-based, context-driven network device ranking

Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.

Flows-first PCAP TUI (case files, gorgeous UX). Do do do do.

3D multi-domain tactical intelligence map — live ships, flights, satellites, cables & space weather in the browser. Time scrubbing, scenario replay,…


Research related to the Power Tracks discovered in market microstructure.

Monitor large transactions on Polymarket and Kalshi prediction markets with anomaly detection

DGA-generated domain detection using deep learning models

Multivariate statistical network monitoring sensor that detects anomalies using PCA-based techniques, aggregating lightweight statistics from…