
maltrail
Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Flight recorder and secret scanner for AI coding agents. Reads what Claude Code, Codex, Gemini CLI and 9 more ran, and flags risky actions and leaked…

SQL powered operating system instrumentation, monitoring, and analytics.

Per-process network monitoring for your terminal with deep packet inspection. Cross-platform, sandboxed.

Web-based Traffic and Cybersecurity Network Traffic Monitoring

Spip network sensor written in Go

🍯 T-Pot - The All In One Multi Honeypot Platform 🐝

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

Arkime is an open source, large scale, full packet capturing, indexing, and database system.

A Python package and CLI for parsing aggregate and forensic DMARC reports

Go-based CLI tool that scans codebases for launch readiness, detecting missing configuration, security hygiene issues, secret leaks, and integration…

Real-time network traffic visualizer — see every connection your computer makes. Privacy-first, 100% local. / Visualiseur de trafic réseau en temps…

Defensive research tool that documents observable API endpoints and user agents of offensive tooling targeting Microsoft Entra ID, supporting…

Real-time network diagnostics in your terminal. One command, zero config, instant visibility.

Read-only checker for Citrix NetScaler CTX697096 (CVE-2026-88771–88778): verifies build, CVE preconditions and upgrade risks, and sweeps public IoCs…

Open-source network IDS/IPS/NSM engine for real-time traffic inspection, intrusion detection and prevention, protocol analysis, and rule-based threat…

Scripts to triage compromised systems (Linux, ESXi, FreeBSD/NetScaler)

This repository contains a list of new remediation scripts.