Actionable analytics designed to combat threats
-
Updated
May 25, 2022 - Python
Actionable analytics designed to combat threats
KQL Queries. Microsoft Defender, Microsoft Sentinel
DFIR Timeline Analysis for macOS — SQLite-backed viewer for CSV, TSV, XLSX, EVTX, Plaso, $MFT, and $J files with AI Artifacts, AI Secret Hunt, process inspection, lateral movement tracking, persistence detection, and VirusTotal enrichment.
Configure and deploy AWS GuardDuty.
A simple, low-interaction SSH honeypot server in Python for easy network traffic monitoring
bypassing Anti-viruses by csharp programming v2.0
A simple, low-interaction DNS honeypot server in Python for easy network traffic monitoring
A simple, low-interaction LDAP honeypot server in Python for easy network traffic monitoring
A simple, low-interaction NTP honeypot server in Python for easy network traffic monitoring
Loading Csharp C2 Client-side codes in RAM by Very Simple New Technique to avoid Detection
A simple, low-interaction PostgreSQL honeypot server in Python for easy network traffic monitoring
A simple, low-interaction FTP honeypot server in Python for easy network traffic monitoring
This is an artificial intelligence (ML and DL) project for network security which works by detecting threats and uses attack classification and then implements self-healing mechanisms
A simple, low-interaction TELNET honeypot server in Python for easy network traffic monitoring
A simple, low-interaction SIP honeypot server in Python for easy network traffic monitoring
"GuardianEye 🌐🔒: Empowering Cybersecurity with Advanced Keylogger – A robust defense system providing comprehensive monitoring of employee activities, capturing keystrokes, screenshots, application logs, and system logs for proactive threat detection and enhanced security insights in modern business operations. 🛡️💻
Identifies real file types via binary signatures (Magic Numbers) to uncover hidden extensions, detect masqueraded malware, and mitigate phishing vectors.
KQL-Queries 🐙 provides ready KQL scripts for Microsoft Defender XDR threat hunting, helping security teams detect, investigate, and respond to threats.
SecForge is a collection of practical cybersecurity and blue team projects focused on threat detection, intrusion detection, secure coding, vulnerability assessment, and security automation. It demonstrates real-world defensive security implementations using Python, Linux, and modern security tools in controlled lab environments.
Add a description, image, and links to the threatdetection topic page so that developers can more easily learn about it.
To associate your repository with the threatdetection topic, visit your repo's landing page and select "manage topics."