
RITA-J
Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.

Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.

Bro analyzer that detects Google's QUIC protocol

The best-in-class macOS app to See every packet clearly on your Mac. Alternative to Wireshark


All-in-One malware analysis tool.

This is the development tree. Production downloads are at:

A Swiss army knife for your daily Linux network plumbing.

FATT /fingerprintAllTheThings - a pyshark based script for extracting network metadata and fingerprints from pcap files and live network traffic

A python script that can detect and parse loki-bot (malware) related network traffic. This script can be helpful to DFIR analysts and security…

Distributed & real time digital forensics at the speed of the cloud

End-to-end simulation of a Python dependency confusion attack, sudo privilege escalation (CVE-2025-32463), and rootkit-based persistence - with full…

RDP monster-in-the-middle (mitm) and library for Python with the ability to watch connections live or after the fact

Incident Response (IR) case study documenting the investigation of an exploitation attempt targeting CVE-2024-24919 (Arbitrary File Read) on a Check…

🐸 Identify anything. pyWhat easily lets you identify emails, IP addresses, and more. Feed it a .pcap file or some text and it'll tell you what it…

Downloaded a packet capture (.pcapng) file from malware-traffic-analysis.net which was an example of an attempted attack against a webserver using…


Breakdown of a c2-network of chinese beamers - SilentSDK-Analysis