
RITA-J
Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.

Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.

'Packet Capture Forensic Evidence eXtractor' is a tool that finds and extracts files from packet capture files

Pcap importer for Burp

OpenFPC, Open Source Full Packet Capture

Zeek support for Community ID flow hashing.


A flow-based network monitor with Deep Packet Inspection

Bro analyzer that detects Google's QUIC protocol

A Zeek IPSec protocol analyzer based on Spicy.

A Zeek Wireguard protocol analyzer based on Spicy.

A Zeek OSPF packet analyzer based on Spicy.


CVE-2017-0199 XLS --> HTA --> VBS --> STEGANOGRAPHY --> DBATLOADER/GULOADER STYLE MALWARE


Reports on post-exploitation on honeypot exploiting vulnerable wu-ftpd (CVE-2001-0550)

Behavioral Malware Analysis of a Simulated Multi-Stage Windows Malware Sample using FLARE-VM and REMnux. Evidence-driven DFIR investigation with IOC…