
thrunt-god
Threat hunting command system for agentic IDEs

Threat hunting command system for agentic IDEs

Honeynet Project generic authenticated datafeed protocol

Tools for investigating Log4j CVE-2021-44228

Arkime is an open source, large scale, full packet capturing, indexing, and database system.

System-independent library for user-level packet capture and filtering. Provides a portable framework for low-level network monitoring, security…

Github mirror of official Kismet repository

Automated threat intelligence aggregation tool that extracts and normalizes indicators from multiple sources (OSINT feeds, malware reports) into a…

Botnet monitoring is a crucial part in threat analysis and often neglected due to the lack of proper open source tools. Our tool will provide an open…

Zeek script using the official ICANN Top-Level Domain (TLD) list with the Input Framework to extract the relevant information from a DNS query and…

An advanced real time threat intelligence framework to identify threats and malicious web traffic on the basis of IP reputation and historical data.

Honeypot FTP server written in .NET Core (C#) for both Linux and Windows.

SigCorr is the first open-source tool to detect cross-protocol attack chains spanning SS7/MAP, Diameter S6a, and GTPv2-C through unified subscriber…

Integrates your Modern Honeypot Network Server and Wordpress Blog via MHN's REST API and WP's shortcodes

IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.

Multivariate statistical network monitoring sensor that detects anomalies using PCA-based techniques, aggregating lightweight statistics from…

Top DNS Measurement for Bro

Training-free anomaly detection framework using Shannon Entropy, Fisher Information, and Wasserstein Distance to map system states into geometrically…

Primary data pipelines for intrusion detection, security analytics and threat hunting