
NetAlertX
Centralized network visibility and continuous asset discovery. Monitor devices, detect change, and stay aware across distributed networks.

Centralized network visibility and continuous asset discovery. Monitor devices, detect change, and stay aware across distributed networks.

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

Open Source Deep Packet Inspection Software Toolkit

🍯 T-Pot - The All In One Multi Honeypot Platform 🐝

A curated list of resources related to Industrial Control System (ICS) security.

PowerShell script that monitors Windows DNS traffic via pktmon to detect poisoning, spoofing, rogue resolver responses, and gateway MAC changes,…

Automate stopping bad bots from accessing your server

Lightweight web-attack monitor. One Go binary + SQLite. Not OSSEC, not a WAF.

JA4+ is a suite of network fingerprinting standards

Advanced detection of port scanning, DoS and malware attacks using Machine Learning techniques

Threat hunting command system for agentic IDEs

A complete Blue Team Cybersecurity Lab featuring pfSense, Suricata, and ELK Stack for network monitoring and threat detection.

Curated collection of threat hunting and detection queries for CrowdStrike Falcon (CQL) and Microsoft Defender XDR (KQL), mapped to MITRE ATT&CK…

CVE-2017-0144

Honeynet Project generic authenticated datafeed protocol

A tool to monitor local network traffic for possible security vulnerabilities. Warns user against possible nmap scans, Nikto scans, credentials sent…

Deploy web honeypots to capture emerging attack data, analyze ModSecurity audit logs via ELK, and share threat intelligence with MISP for…