
AiSOC
Open-source AI-powered Security Operations Center — alert fusion, purple-team drills, agent-assisted triage, MITRE ATT&CK investigation.…

Open-source AI-powered Security Operations Center — alert fusion, purple-team drills, agent-assisted triage, MITRE ATT&CK investigation.…

A tool to assist with network-based hunting for GRU's Drovorub malware c2

Network traffic inspection tool that reassembles TCP/UDP flows and inspects them using regex, fuzzy string matching, shellcode detection (libemu),…

Digital forensics and incident response tool using YARA rules to scan Citrix NetScaler core dumps, disk images, and live hosts for signs of…

Analyzes SSH packet captures using machine learning to predict reverse tunnels, keystrokes, data exfiltration, and authentication methods for…

Analyzes pcap files to detect DNS tunneling, SSH tunneling, TCP hijacking, and various network attacks (SYN flood, Slowloris, SMB) with…