
Open-Source-Threat-Intel-Feeds
This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple types such…

This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple types such…

System-independent library for user-level packet capture and filtering. Provides a portable framework for low-level network monitoring, security…

Daemon to ban hosts that cause multiple authentication errors

Low-resource honeypot that emulates common network services to detect post-breach attacker activity, with extensible protocol modules and…

Automated threat intelligence aggregation tool that extracts and normalizes indicators from multiple sources (OSINT feeds, malware reports) into a…

Generates efficient IPv4 blocklists from Zeek network flows using multiple prioritization models (new, consistent, random forest) to identify…

Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, and rule types

Rust-based endpoint security agent with application whitelisting, attack detection, and prevention. Supports multiple platforms with audited…