
pastokrapacefleciks
Analyzes .pcapng files to generate HTML reports for network traffic inspection and forensic review.

Analyzes .pcapng files to generate HTML reports for network traffic inspection and forensic review.

Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.

Analyze Windows Firewall outbound blocks and selectively allow traffic

Open-source network IDS/IPS/NSM engine for real-time traffic inspection, intrusion detection and prevention, protocol analysis, and rule-based threat…

The Console Monitor Driver is a KMDF kernel-mode filter driver that captures certain Fast I/O operations (input and output) that is sent to or from…

A headless , scriptable, command-line based MITM proxy designed for network traffic interception, analysis, and modification on Windows systems.

A flow-based network monitor with Deep Packet Inspection

Splunk app for integrating and analyzing Corelight network detection data, enabling real-time threat hunting and incident response.

Corelight@Home script

Zeek support for Community ID flow hashing.

Bro analyzer that detects Google's QUIC protocol

Corelight Dashboards and Parsers for Sentinel One Singularity

A Zeek OpenVPN protocol analyzer, based on Spicy.

ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. It has a robust event-based…

analyze a web-based network traffic 🕶 to detect central command and control servers

An event-driven network monitoring platform that performs live packet capture (Npcap), low-latency traffic analytics, and unsupervised threat…

Kernel-level security & attack response for Linux servers.

eBPF-powered network observability for Kubernetes. Indexes L4/L7 traffic with full K8s context, decrypts TLS without keys. Queryable by AI agents via…