
maltrail
Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

Single-page web dashboard for Meshtastic mesh networks with live network mapping, packet analysis, chat, sensor telemetry, and topology…

HTTP Proxy Analysis for reverse engineering protocol communication

Mounts AWS resources as a local filesystem for infrastructure exploration, security auditing, and configuration analysis using standard Unix tools…

Basic log analysis tool to detect impossible travel via IP address geographic information

Technical write-up and analysis of PrintNightmare (CVE-2021-1675 / CVE-2021-34527), covering RCE/LPE exploitation, detection via Windows event logs,…

A headless , scriptable, command-line based MITM proxy designed for network traffic interception, analysis, and modification on Windows systems.

Arkime is an open source, large scale, full packet capturing, indexing, and database system.


SQL powered operating system instrumentation, monitoring, and analytics.

🍯 T-Pot - The All In One Multi Honeypot Platform 🐝

Per-process network monitoring for your terminal with deep packet inspection. Cross-platform, sandboxed.

Microsoft Threat Intelligence Security Tools

Open-source security framework for real-time event tracking, threat detection, and risk scoring. Monitors user behavior, detects fraud, bot attacks,…

Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.

Next-Gen GUI-based WiFi and Bluetooth Analyzer for Linux

Powershell Based tool for gathering information related to O365 intrusions and potential Breaches