RITA is an open source framework for network traffic analysis that ingests Zeek Logs in TSV format. It includes features such as Beaconing Detection, DNS Tunneling Detection, and Blacklist Checking. For installation, RITA provides an automated install script that works on various operating systems.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A library for integrating communication channels with the Cobalt Strike External C2 server.
Network Dump data Displayer and Editor framework for tcpdump trace files manipulation.
Port listener / honeypot in Rust with protocol guessing, safe string display and rudimentary SQLite logging.
A command line tool for running SQL queries on PCAP files with various output options and a simplistic web-server.
A next-generation intrusion prevention system that combines signature-based and behavioral detection techniques to identify and block sophisticated network threats across hybrid environments.
DOS attack by sending fake BPDUs to disrupt switches' STP engines.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.