
PortDog
Network anomaly detector that monitors raw packets to identify port scanning activity in real time, with flexible sniffing duration controls and live…

Network anomaly detector that monitors raw packets to identify port scanning activity in real time, with flexible sniffing duration controls and live…

Advanced detection of port scanning, DoS and malware attacks using Machine Learning techniques

Offline-first network investigation and response platform for Windows. Turns a pcap or live capture into a full forensic verdict — attack story,…

Flows-first PCAP TUI (case files, gorgeous UX). Do do do do.

3D multi-domain tactical intelligence map — live ships, flights, satellites, cables & space weather in the browser. Time scrubbing, scenario replay,…

Single-host runtime-security dashboard on eBPF — Go agent + SvelteKit. Live process tree, network map, and rule-based alerts for plain Linux hosts.

Training-free anomaly detection framework using Shannon Entropy, Fisher Information, and Wasserstein Distance to map system states into geometrically…

A package for capturing and analyzing network flow data and intraflow data, for network research, forensics, and security monitoring.

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

SQL powered operating system instrumentation, monitoring, and analytics.

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Web-based Traffic and Cybersecurity Network Traffic Monitoring

Very fast DDoS sensor with sFlow/Netflow/IPFIX/SPAN support

Microsoft Threat Intelligence Security Tools

Monitor your local neighbourhood's bluetooth activity


A modular, skill-based autonomous Security Operations Center (SOC) agent that monitors OpenSearch/Elasticsearch data, builds RAG-based behavioral…

AI-based, context-driven network device ranking