Safing Portmaster is an open-source application firewall that monitors and controls network traffic on Windows and Linux systems. The tool provides visibility into all network connections made by applications on a device, allowing users to identify and block unwanted connections. It features system-wide tracker blocking that extends beyond browser protection to all applications. Portmaster enables users to create custom filtering rules at both global and per-application levels. Users can completely block internet access for specific applications, filter connections based on geographical regions, or block peer-to-peer connections selectively. The application includes a monitoring dashboard that displays real-time network activity, showing which applications are connecting to which domains. This helps users detect potentially malicious connections and take appropriate action. Portmaster operates locally on the device and doesn't require cloud processing of network data. It's designed to enhance privacy by giving users control over their device's network communications. The software is available for Windows, Debian/Ubuntu, and Fedora operating systems. While the core functionality is free and open-source, there appears to be additional premium features available.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
Suricata offers real-time intrusion detection, intrusion prevention, and network monitoring.
Snort is an open source intrusion prevention system that uses rules to detect and prevent malicious network activity.
Unfurl is a URL analysis tool that extracts and visualizes data from URLs, breaking them down into components and presenting the information visually.
A TCP-based traceroute implementation that bypasses firewall filters to trace the path to a destination.
Tcpdump is a command-line packet analyzer for capturing and analyzing network traffic.
A suite for man in the middle attacks, featuring sniffing of live connections, content filtering, and protocol dissection.
A Bluetooth 5 and 4.x sniffer using TI CC1352/CC26x2 hardware with advanced features and Python-based host-side software.
NBD is a user-space network protocol for sharing block devices over a network, allowing clients to access block devices on a server as if they were local.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.