
ntopng
Web-based Traffic and Cybersecurity Network Traffic Monitoring

Web-based Traffic and Cybersecurity Network Traffic Monitoring

Collection of Python and Perl scripts for digital forensics, incident response, and network analysis, including hash signature tooling and packet…

SO-CRATES: Security Onion Containerized Rapid Analysis of Threats, Evil, and Sus!


Open-source security monitoring platform for threat hunting, intrusion detection, log management, incident response, and endpoint visibility with…

Incident Response (IR) case study documenting the investigation of an exploitation attempt targeting CVE-2024-24919 (Arbitrary File Read) on a Check…

Flows-first PCAP TUI (case files, gorgeous UX). Do do do do.

Splunk app for integrating and analyzing Corelight network detection data, enabling real-time threat hunting and incident response.

Dshell is a network forensic analysis framework.

Zeek support for Community ID flow hashing.

Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.

Security Onion 16.04 - Linux distro for threat hunting, enterprise security monitoring, and log management

Bro analyzer that detects Google's QUIC protocol

A flow-based network monitor with Deep Packet Inspection