
wireless-ids
Ability to detect suspicious activity such as (WEP/WPA/WPS) attack by sniffing the air for wireless packets.

Ability to detect suspicious activity such as (WEP/WPA/WPS) attack by sniffing the air for wireless packets.

Monitors for DCSYNC and DCSHADOW attacks and create custom Windows Events for these events.

Sniffles: Packet Capture Generator for IDS and Regular Expression Evaluation

LLMNR/NBNS/mDNS Spoofing Detection Toolkit

NCC Group research repository with decoding scripts, Yara and Suricata signatures for APT15 (Royal APT) malware, enabling beacon analysis and command…

Configures Raspberry Pi to run Corelight Software Sensor for network security monitoring, extracting metadata/alerts and forwarding to Splunk or…

Generates simulated malicious process, file, registry, and DNS events with custom parent/child attributes, letting defenders validate detection rules…

Generates efficient IPv4 blocklists from Zeek network flows using multiple prioritization models (new, consistent, random forest) to identify…

A collection of Tools and Rules for decoding Brute Ratel C4 badgers

Monitors Asterisk authentication logs and automatically bans IPs with repeated failed login attempts using iptables, with configurable thresholds and…

Parse, filter, and visualize Suricata eve.json logs with CLI tools for alerts, flows, DNS, and payloads. Includes a tutorial for learning Suricata…

Automated Network Security with Rust: Detecting and Blocking Port Scanners

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

JA4+ is a suite of network fingerprinting standards

Open-source network access control (NAC) system with captive portal, 802.1X, BYOD management, wired/wireless enforcement, and IDS/vulnerability…

Deep Learning models for network traffic classification

A binary and file access authorization system for macOS.

Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)