
ALYCON-Threat-Landscape
Training-free anomaly detection framework using Shannon Entropy, Fisher Information, and Wasserstein Distance to map system states into geometrically…

Training-free anomaly detection framework using Shannon Entropy, Fisher Information, and Wasserstein Distance to map system states into geometrically…

Open-source XDR and SIEM platform for threat detection, log analysis, file integrity monitoring, vulnerability assessment, and compliance management…

Automated Linux hardening script that configures firewalls, malware scanners, system auditing, and network security controls across major…

SQL powered operating system instrumentation, monitoring, and analytics.

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Open-source motion detection system using Wi-Fi Channel State Information (CSI) on ESP32. Features ESPHome integration, automatic calibration, and an…

Intercepts Windows system binaries like vssadmin and wmic to detect ransomware command-line patterns with YARA and kill the invoking process tree.…

NOVA - Claude Code Protection System against prompt injection attacks

Semantic Observability for UNIX Systems - A lightweight C-based system prober with AI-powered analysis

ML-assisted forensic analysis tool that automates memory, disk, and live system triage on Windows using Volatility 3, autorunsc, and sigcheck to…

A host-based IDS and network monitoring system (My graduation project)

Real-time host intrusion detection system for desktop Linux users, alerting on suspicious processes, new TCP connections, auditd events, and USB…

Graph-based threat detection system using inexact graph vector matching to compare threat graphs with CTI-derived attack query graphs for automated…

Kratos is a high-performance Windows File System Minifilter driver designed to detect, block, and permanently immunize

ML-Based behavioral endpoint detection system for Linux machines

Autonomous AI-powered cyber defense system using MCP, Gemini 2.0 Flash, Dynatrace observability and MongoDB. Google Cloud Hackathon submission.

Lightweight Python-based IDS that monitors network traffic in real-time using Scapy, detecting DoS/DDoS attacks via per-IP request rate analysis with…

Open-source APM system for monitoring, tracing, and diagnosing distributed cloud-native applications with root cause analysis, topology mapping, and…