
Dshell
Dshell is a network forensic analysis framework.

Dshell is a network forensic analysis framework.

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

GitHub mirror of the Linux Kernel's audit repository

Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.


An advanced real time threat intelligence framework to identify threats and malicious web traffic on the basis of IP reputation and historical data.

A Software as a Service (SaaS) log collection framework.

Zeek script using the official ICANN Top-Level Domain (TLD) list with the Input Framework to extract the relevant information from a DNS query and…

A framework and taxonomy for identifying, classifying, and reasoning about detection logic bugs in SIEM, EDR, and XDR rules, with concrete examples…

Feature toggle framework for Java enabling runtime feature activation, role-based access, AOP-driven toggling, monitoring, audit trails, and a web…

ESF modular ingestion tool for development and research.