
logdata-anomaly-miner
This tool parses log data and allows to define analysis pipelines for anomaly detection. It was designed to run the analysis with limited resources…

This tool parses log data and allows to define analysis pipelines for anomaly detection. It was designed to run the analysis with limited resources…

This repository demonstrates a machine learning pipeline for detecting MITRE ATT&CK techniques from logs and enriching the output using a local LLM.

This repository hosts a multimodal web attack dataset (MWAD) to advance AI-driven threat detection research.

This repository includes the source code used in the "Characterization and Detection of Cross-Router Covert Channels" paper.

This is a bash script focus on hardening linux. This is a custom think of windows defender but unlike of their privacy issue. User can feel freedom…

This repository provides an in-depth analysis of the Log4Shell vulnerability (CVE-2021-44228) and implements a machine learning-based approach to…

Database firewall written in Go

LSTM-based classifier for detecting domain generation algorithm (DGA) domains, with Keras implementations of neural network and bigram models for DNS…

ETW based POC to identify direct and indirect syscalls

Zeek package for tracking long connections to report them before they have completed.

Sigma detection rules for AI agent security monitoring

Small tool to play with IOCs caused by Imageload events

A host-based IDS and network monitoring system (My graduation project)

My experiments in weaponizing ONOS applications (https://github.com/opennetworkinglab/onos)

OSINT - Data Visualization - Blockchain - Awareness - Scam

Detection of rootkit file hiding activities through analysis of shifts in kernel function execution times.

Advanced detection of port scanning, DoS and malware attacks using Machine Learning techniques

Graph-based threat detection system using inexact graph vector matching to compare threat graphs with CTI-derived attack query graphs for automated…