
rita
Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.
anomaly-detectioncommand-and-controldns-analysis+4
625

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

Small example repo for looking into log4j CVE-2021-44228

Look for un-sinkholed C&C IPs in your Bro logs (from Bambanek Consulting C&C master list)

Run on your ManageEngine server

Extract useful information from PANOS support file for CVE-2024-3400

CVE-2026-52813 (Gogs Path Traversal → Git Hooks RCE) defensive writeup: root-cause & patch analysis, Sigma/SIEM detection rules, IOCs, non-intrusive…

