
siper
XDP Based Lightweight and Fast Firewall

XDP Based Lightweight and Fast Firewall

Web-based Traffic and Cybersecurity Network Traffic Monitoring

Docker-based multi-stage attack emulation lab demonstrating CVE-2017-5638 and CVE-2021-41773 exploitation, lateral movement, and Suricata IDS…

High fidelity defensive security lab simulating a DoD aligned enterprise network with Active Directory, VLAN segmentation, STIG based hardening,…

Lightweight Python-based IDS that monitors network traffic in real-time using Scapy, detecting DoS/DDoS attacks via per-IP request rate analysis with…

Aggregated Zeek-format threat intelligence feeds with combined indicators from public and curated sources for continuous IDS and network threat…

Machine Learning based Intrusion Detection Systems are difficult to evaluate due to a shortage of datasets representing accurately network traffic…

Generates efficient IPv4 blocklists from Zeek network flows using multiple prioritization models (new, consistent, random forest) to identify…

A Linux Host-based Intrusion Detection System based on eBPF.

The Sigma command line interface based on pySigma

ETW based POC to identify direct and indirect syscalls

A tool to generate Snort rules based on public IP reputation data

A host based IDS written in C# Targetted at Metasploit

Kernel-level security engine using eBPF-LSM to enforce file access policies based on process lineage, protecting sensitive data from supply-chain…

A Zeek OpenVPN protocol analyzer, based on Spicy.

A Zeek IPSec protocol analyzer based on Spicy.


Detection rules and analysis for Dirty Frag (CVE-2026-43284/CVE-2026-43500) Linux kernel LPE vulnerability. Based on community research and health…