
NetworkAlarm
A tool to monitor local network traffic for possible security vulnerabilities. Warns user against possible nmap scans, Nikto scans, credentials sent…

A tool to monitor local network traffic for possible security vulnerabilities. Warns user against possible nmap scans, Nikto scans, credentials sent…

Snort 3 IDS → IPS lab on Kali. Custom detection rules + iptables enforcement against ICMP recon, Nmap SYN scans, Hydra FTP brute force, and vsftpd…

IDS/IPS lab for detecting and preventing Apache ActiveMQ RCE (CVE-2023-46604) using GVM, Nmap, Snort, iptables, and UFW.

SQL powered operating system instrumentation, monitoring, and analytics.

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

🍯 T-Pot - The All In One Multi Honeypot Platform 🐝

Arkime is an open source, large scale, full packet capturing, indexing, and database system.

Web-based Traffic and Cybersecurity Network Traffic Monitoring

Open Source Deep Packet Inspection Software Toolkit

Rust tool to detect cell site simulators on an orbic mobile hotspot

Centralized network visibility and continuous asset discovery. Monitor devices, detect change, and stay aware across distributed networks.

System-independent library for user-level packet capture and filtering. Provides a portable framework for low-level network monitoring, security…

Github mirror of official Kismet repository


A curated list of resources related to Industrial Control System (ICS) security.

JA4+ is a suite of network fingerprinting standards

IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.