gamelinux / passivednsView external linksLinks
A network sniffer that logs all DNS server replies for use in a passive DNS setup
☆1,735May 28, 2024Updated last year
Alternatives and similar repositories for passivedns
Users that are interested in passivedns are comparing it to the libraries listed below
Sorting:
- passivedns-client provides a library and a query tool for querying several passive DNS providers☆201Dec 19, 2021Updated 4 years ago
- Arkime is an open source, large scale, full packet capturing, indexing, and database system.☆7,305Updated this week
- Mac Intrusion Detection Analysis System☆826Sep 23, 2015Updated 10 years ago
- DEPRECATED - MozDef: Mozilla Enterprise Defense Platform☆2,170Nov 2, 2021Updated 4 years ago
- Modern Honey Network☆2,467Nov 30, 2024Updated last year
- GRR Rapid Response: remote live forensics for incident response☆5,038Dec 16, 2025Updated last month
- The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file s…☆2,984Jan 24, 2026Updated 3 weeks ago
- Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.☆7,470Updated this week
- OS X Auditor is a free Mac OS X computer forensics tool☆3,136Jul 27, 2020Updated 5 years ago
- OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, roo…☆5,025Feb 9, 2026Updated last week
- Distributed & real time digital forensics at the speed of the cloud☆1,206Sep 13, 2019Updated 6 years ago
- Cuckoo Sandbox is an automated dynamic malware analysis system☆5,908May 3, 2022Updated 3 years ago
- Passive DNS collection using Zeek☆182Jun 2, 2023Updated 2 years ago
- Fast Incident Response☆1,988Updated this week
- Malicious HTTP traffic explorer☆725Mar 16, 2023Updated 2 years ago
- IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.☆1,107Dec 2, 2025Updated 2 months ago
- Alienvault Labs Projects Random Stuff☆529Dec 22, 2021Updated 4 years ago
- Domain name permutation engine for detecting homograph phishing attacks, typo squatting, and brand impersonation☆5,583Apr 15, 2025Updated 10 months ago
- Loki - Simple IOC and YARA Scanner☆3,719Jan 12, 2026Updated last month
- A curated list of Awesome Threat Intelligence resources☆9,741Jan 19, 2026Updated 3 weeks ago
- Web App for Volatility framework☆389Jan 13, 2026Updated last month
- A forensic evidence collection & analysis toolkit for OS X☆1,893Jun 19, 2019Updated 6 years ago
- A curated list of tools for incident response☆8,808Jul 18, 2024Updated last year
- Network recon framework. Build your own, self-hosted and fully-controlled alternatives to Shodan / ZoomEye / Censys and GreyNoise, run yo…☆3,943Jan 27, 2026Updated 2 weeks ago
- (extensible) Data Exfiltration Toolkit (DET)☆828Nov 3, 2017Updated 8 years ago
- Malcom - Malware Communications Analyzer☆1,165Nov 29, 2017Updated 8 years ago
- AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project☆1,361Feb 4, 2026Updated last week
- DPS' Lightweight Investigation Notebook☆433Dec 31, 2023Updated 2 years ago
- Malicious traffic detection system☆8,236Updated this week
- RedSnarf is a pen-testing / red-teaming tool for Windows environments☆1,212Sep 14, 2020Updated 5 years ago
- An #OSINT Framework to perform various recon techniques on Companies, People, Phone Number, Bitcoin Addresses, etc., aggregate all the r…☆3,223Nov 20, 2025Updated 2 months ago
- Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux☆504Oct 21, 2022Updated 3 years ago
- Investigate malicious Windows logon by visualizing and analyzing Windows event log☆3,049Oct 19, 2025Updated 3 months ago
- MISP (core software) - Open Source Threat Intelligence and Sharing Platform☆6,123Updated this week
- A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more e…☆4,475Jan 12, 2026Updated last month
- Configuration files for the SOF-ELK VM☆1,715Jan 21, 2026Updated 3 weeks ago
- Your Everyday Threat Intelligence☆1,949Updated this week
- Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv…☆4,826Jun 15, 2020Updated 5 years ago
- FakeNet-NG - Next Generation Dynamic Network Analysis Tool☆2,078Dec 9, 2025Updated 2 months ago