
packetfence
PacketFence is a fully supported, trusted, Free and Open Source network access control (NAC) solution. Boasting an impressive feature set including a…

PacketFence is a fully supported, trusted, Free and Open Source network access control (NAC) solution. Boasting an impressive feature set including a…

Rust tool to detect cell site simulators on an orbic mobile hotspot

JA4+ is a suite of network fingerprinting standards

Automated threat intelligence aggregation tool that extracts and normalizes indicators from multiple sources (OSINT feeds, malware reports) into a…

Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)

Ability to detect suspicious activity such as (WEP/WPA/WPS) attack by sniffing the air for wireless packets.

A network packet forensics tool for SSH

Encrypted peer-to-peer mesh VPN for remote mobile forensics, enabling wireless ADB and libimobiledevice acquisition, network monitoring, and…

Monitors for DCSYNC and DCSHADOW attacks and create custom Windows Events for these events.

Audix is a PowerShell tool to quickly configure the Windows Event Audit Policies for security monitoring

Machine Learning based Intrusion Detection Systems are difficult to evaluate due to a shortage of datasets representing accurately network traffic…

NetworkAssessment: Network Compromise Assessment Tool

This tool parses log data and allows to define analysis pipelines for anomaly detection. It was designed to run the analysis with limited resources…


Botnet monitoring is a crucial part in threat analysis and often neglected due to the lack of proper open source tools. Our tool will provide an open…

LLMNR/NBNS/mDNS Spoofing Detection Toolkit

A tool to generate Snort rules based on public IP reputation data

Tool that gathers a customizable set of ETW telemetry and generates user-defined detections