
DNSWatch
DNS traffic sniffer and analyzer for monitoring, filtering, and detecting anomalies in DNS queries. Features include PCAP export, DoH support, and a…

DNS traffic sniffer and analyzer for monitoring, filtering, and detecting anomalies in DNS queries. Features include PCAP export, DoH support, and a…

A script to configure a TP-Link MR3040 running OpenWRT into a simple, yet powerful penetration-testing "dropbox".

Large-scale open-source network analysis and full packet capture system. Indexes PCAP traffic in standard format, providing fast search, browsing,…

Terminal-based network bandwidth monitor that displays per-process, per-connection, and per-remote-host utilization by sniffing network interfaces…

Wireshark plugin that captures and analyzes Event Tracing for Windows (ETW) logs alongside network traffic, enabling unified system and network…

A host-based IDS and network monitoring system (My graduation project)

Local, privacy-first DNS firewall with default-deny policy, real-time TUI dashboard, 4-tier permission system, traffic recording, and DNS redirection…

Lightweight Python-based IDS that monitors network traffic in real-time using Scapy, detecting DoS/DDoS attacks via per-IP request rate analysis with…

A curated list of resources related to Industrial Control System (ICS) security.

Multi-threaded network intrusion detection and prevention system with rule-based detection, protocol-aware inspection, and pcap analysis for…

Functional Network Framework for Multi-Core Architectures

Android VPN-based local proxy that bypasses Deep Packet Inspection (DPI) and censorship by redirecting all traffic through a SOCKS5 tunnel without…

Local proxy that bypasses Deep Packet Inspection by fragmenting TLS ClientHello packets, enabling access to blocked websites without requiring…

Automated MITM suite leveraging Ettercap for ARP poisoning, traffic sniffing, credential harvesting, payload injection, and network reconnaissance…

Invisible network tap for red teams. Transparently bridges traffic, bypasses 802.1x NAC, captures packets, and establishes VPN tunnels for remote…

This is a mini-firewall that completely isolates a target device from the local network.

Poison, reset, spoof, redirect MITM script

Wireshark-like forensic analysis for Model Context Protocol communications Capture, inspect, and investigate all HTTP requests and responses between…