Network Detection and Response

NDR platforms for real-time network threat detection, investigation, and automated response to network-based attacks.

Explore 38 curated cybersecurity tools, with 14,802+ visitors searching for solutions

FEATURED

Proton Pass Logo

Password manager with end-to-end encryption and identity protection features

NordVPN Logo

VPN service providing encrypted internet connections and privacy protection

Mandos Fractional CISO Services Logo

Fractional CISO services for B2B companies to accelerate sales and compliance

Get Featured

Feature your product and reach thousands of professionals.

ExeonTrace Network Detection and Response (NDR) Platform Logo

A network detection and response platform that uses machine learning to analyze network metadata for threat detection without requiring hardware sensors or being affected by encryption.

0
Infoblox Threat Defense Logo

Infoblox Threat Defense is a DNS-layer security solution that detects and blocks threats across hybrid and multi-cloud environments by monitoring DNS traffic and leveraging threat intelligence.

0
Logpoint NDR Logo

A network detection and response solution that uses AI and machine learning to monitor network traffic, identify malicious behavior, and connect related security events to reveal attack patterns without requiring endpoint agents.

0
IronDefense Logo

A network detection and response platform that combines AI-driven behavioral analytics with collaborative threat intelligence sharing across organizations to provide early warning of cyber attacks.

0
Arkime Logo

Arkime is an open-source network capture and analysis tool that provides comprehensive network visibility, facilitating swift identification and resolution of security and network issues.

1
LogRythm NetMon Logo

LogRhythm NetMon is a network traffic analytics tool that provides real-time visibility, automated threat detection, and investigation capabilities for organizational networks.

0
NFStream Logo

NFStream is a multiplatform Python framework for network flow data analysis with a focus on speed and flexibility.

0
GQUIC Protocol Analyzer Logo

A Zeek-based protocol analyzer that parses GQUIC traffic to extract connection metadata and create fingerprints for detecting anomalous network behavior.

0
OVIZART Logo

Django based web application for network traffic analysis with protocol handling capabilities.

0
Apache Spot (Incubating) Logo

Apache Spot is an open source big data platform that analyzes network flows and packet data to identify security threats and provide visibility into enterprise computing environments.

0
PCAPdroid Logo

PCAPdroid is a privacy-friendly app for tracking, analyzing, and blocking network connections on your device.

0
BZAR Logo

A set of Bro/Zeek scripts that detect ATT&CK-based adversarial activity and raise notices

0
kube-iptables-tailer Logo

A service for better visibility on networking issues in Kubernetes clusters by detecting traffic denied by iptables.

0
pkt2flow Logo

A tool for classifying packets into flows based on 4-tuple without additional processing.

0
Sniff Logo

Makes output from the tcpdump program easier to read and parse.

0
Justniffer Logo

A network protocol analyzer for capturing and analyzing network traffic with a focus on TCP/IP flow reconstruction and response time tracking.

0
TLS Fingerprinting Logo

A technique to associate applications with TLS parameters for identifying malware and vulnerable applications.

0
Respounder Logo

A cross-platform network detection tool that identifies active Responder tools by sending LLMNR queries for fabricated hostnames.

0
Vanguards Onion Service Addon Logo

A controller addon that provides additional security defenses for onion services ahead of official Tor-core release.

0
Socket Sentry Logo

A KDE Plasma 4 widget that displays real-time traffic information for active network connections on Linux computers.

0
nfdump Logo

A toolset for collecting and processing netflow/ipfix and sflow data from netflow/sflow compatible devices.

0
PF_RING Logo

High-speed packet capture library with user-level network socket.

0
RDFP Logo

Zeek Remote desktop fingerprinting script for fingerprinting Remote Desktop clients.

0
Maltrail Logo

Maltrail is a malicious traffic detection system utilizing blacklists and heuristic mechanisms.

0

Stay Updated with Mandos Brief

Get the latest cybersecurity updates in your inbox

POPULAR

RoboShadow Logo

A cybersecurity platform that offers vulnerability scanning, Windows Defender and 3rd party AV management, and MFA compliance reporting, among other features.

14
Mandos Brief Newsletter Logo

A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.

7
CloudDefense.AI Logo

CloudDefense.AI is a Cloud Native Application Protection Platform (CNAPP) that safeguards cloud infrastructure and cloud-native apps with expertise, precision, and confidence.

7
Fabric Platform by BlackStork Logo

Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.

6
TestSavantAI Logo

Security platform that provides protection, monitoring and governance for enterprise generative AI applications and LLMs against various threats including prompt injection and data poisoning.

5
View Popular Tools →