Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.
-
Updated
Jan 12, 2026 - Go
Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.
High-performance multi-path covert channel over DNS in Rust with vibe coding
Keylogging server and client that uses DNS tunneling/exfiltration to transmit keystrokes through firewalls.
Database Driven DNS Server with a Web UI
ICMP and DNS tunneling via IPv4 and IPv6
Android VPN over DNS (no root required). Repo moved to gitlab
Sending messages by hacking the DNS protocol. See website for demo server usage instructions
Tunnel TCP or UDP traffic over TCP, (mutual) TLS or DNS (authoritative server or direct connection), implemented in Rust
Slipstream DNS tunnel setup with automatic DNS server scanning via dnscan.
Coyote is a standalone C# post-exploitation implant for maintaining access to compromised Windows infrastructure during red team engagements using DNS tunneling.
Deep Learning for Domain Name System
DNS Tunnel Script. Manage server and client easily with editable values.
Here is an example which shows an idea how DNS tunneling can be implemented in Java.
Deep Learning Based DNS Tunneling Detection and Blocking System. Published with the same title. Publication code : aece 3/2021 - 5
proof of concept for a DNS tunneling client and server, for security education
Detection of malware bot and botnet activities over DNS / Master's Thesis
Describes an architecture for DNS Tunneling detection at AWS cloud using ELK.
A lightweight tool written in Go to monitor and detect potential DNS exfiltration attempts in real-time. Designed for network security analysis.
Add a description, image, and links to the dns-tunneling topic page so that developers can more easily learn about it.
To associate your repository with the dns-tunneling topic, visit your repo's landing page and select "manage topics."