
zeek
Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

Read-only AI agent that queries your cloud, code, and runtime infrastructure to surface misconfigurations, leaked secrets, and privilege escalation…

Automated OSINT framework for reconnaissance, data harvesting, and threat intelligence gathering with modular crawlers, scanners, and extraction…

ATHF is a framework for agentic threat hunting - building systems that can remember, learn, and act with increasing autonomy.

A Software as a Service (SaaS) log collection framework.

A secure low code deception runtime framework, leveraging AI for System Virtualization.

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

Automated forensic analysis tool for Google Workspace audit logs. Acquires all log types, maps events to MITRE ATT&CK Cloud Framework, and identifies…

A Framework for Integrating Application Security into Software Engineering (FIASSE) using the Securable Software Engineering Model (SSEM)

Open-source security framework for real-time event tracking, threat detection, and risk scoring. Monitors user behavior, detects fraud, bot attacks,…


AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE ATT&CK…

amavis is a high-performance email content filter framework written in Perl.

Open Source Link Analysis & OSINT Framework


LLM-first deception framework: "The honeypot that talks back!™"

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

Open-source framework for embedding realistic decoy routes and honey fields into APIs to detect attackers probing business logic, converting…