
rita
Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.
anomaly-detectioncommand-and-controldns-analysis+4
625

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

Berry Sentinel v5.0 — Advanced behavioral C2 and reverse shell detector for Linux/Windows/Unix systems. Features real-time connection analysis,…

Detects phi-structured C2 beacons that evade RITA and standard regularity-based detectors

A Zeek based AsyncRAT malware detector.

A Zeek based Mitre Caldera detector.

Detection for SUNBURST C2 Stage-1 using Shannon Entropy

Zeek detector for QuasarRat