maltrail

Traffic analyzer

Detects and analyzes malicious traffic patterns to identify potential security threats.

Malicious traffic detection system

GitHub

7k stars
229 watching
1k forks
Language: Python
last commit: 4 days ago
Linked from 2 awesome lists

attack-detectionintrusion-detectionmalwarenetwork-monitoringpythonsecuritysensor

Backlinks from these awesome lists:

Related projects:

Repository Description Stars
alexandreborges/malwoverview An automated tool for threat hunting and malware analysis 2,967
manisso/fsociety A comprehensive collection of hacking tools and scripts for penetration testing and vulnerability assessment 10,637
akamai/luda Develops real-time URL-based malware detection system using regexes and clustering 74
telekom-security/malware_analysis An analysis repository providing scripts, signatures, and IOCs for detecting and analyzing malware. 110
tomchop/malcom Analyzes network traffic to detect malware communication and behavior 1,155
undeadsec/evilurl Tools to generate and detect unicode domains for phishing attacks using python 1,135
diogo-fernan/malsub A Python framework that provides an API interface to multiple online services for analyzing malware and threat intelligence 368
darryllane/bluto Tools for gathering information about and exploiting vulnerabilities in domains 619
mzweilin/ipv6-attack-detector Tools to detect and analyze link-local IPv6 attacks 39
marcoramilli/malwaretrainingsets Provides machine learning datasets for malware analysis 225
evyatarmeged/raccoon A high-performance tool for reconnaissance and vulnerability scanning of web applications and networks 3,091
blacklanternsecurity/bbot A multipurpose scanner built to automate reconnaissance, bug bounty, and assembly security testing 5,289
gwillem/magento-malware-scanner Automated scanner for detecting malware and vulnerabilities in Magento stores 679
tencent/habomalhunter Automates malware analysis on Linux systems to extract and analyze static and dynamic features 732
binarydefense/goatrider Tool to compare IP addresses or hostnames to threat intelligence feeds and detect potential security threats. 138