
spamassassin
Open-source email filtering framework that detects spam and phishing using content analysis, header checks, Bayesian scoring, and DNS blocklists.

Open-source email filtering framework that detects spam and phishing using content analysis, header checks, Bayesian scoring, and DNS blocklists.

ATHF is a framework for agentic threat hunting - building systems that can remember, learn, and act with increasing autonomy.

Incident Response Forensic Framework

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

Modular network scanning framework that integrates diverse tools and external databases to detect vulnerabilities and configuration errors, producing…

Hubble is a modular, open-source security compliance framework. The project provides on-demand profile-based auditing, real-time security event…

OWASP Honeypot, Automated Deception Framework.

Automated forensic analysis tool for Google Workspace audit logs. Acquires all log types, maps events to MITRE ATT&CK Cloud Framework, and identifies…

An open-source framework for verifiably private AI inference

Swift-based macOS incident response framework for collecting and analyzing host artifacts, including filesystem timestamps, browser data, unified…

Web-based framework for filtering, collecting, and analyzing tweets to detect coordinated behavior, automated posting, and propaganda operations with…


A Software as a Service (SaaS) log collection framework.

OpenDNS Data Visualization Framework

Modular framework for discovering and analyzing open directories on the web. Crawls URLs, extracts content, applies YARA/ClamAV scanning, and outputs…

YAML-configurable low-interactive honeypot framework for deploying HTTP/HTTPS-based deception servers with built-in honeytraps and Datadog log…

Botnet monitoring is a crucial part in threat analysis and often neglected due to the lack of proper open source tools. Our tool will provide an open…

An advanced real time threat intelligence framework to identify threats and malicious web traffic on the basis of IP reputation and historical data.