C2 Beacon Detector v2.1

ML-Powered Behavioral Analysis with Multi-Source Threat Intel
View Source
Upload Network Traffic Data

Drop JSON file here or click to browse

Accepts: Connection logs, PCAP exports (as JSON)

Try with sample data:
Expected JSON Format
{
  "connections": [
    {
      "timestamp": 1704646800000,
      "bytes": 1024,
      "dest_ip": "192.168.1.100",
      "src_port": 49152,
      "dest_port": 443
    }
  ]
}
Threat Intelligence & ML Status

Loading threat intelligence feeds...

What's New in v2.1

Multi-Source Threat Intel

  • • ThreatFox API integration
  • • Custom detection rules
  • • Combined confidence scoring
  • • CIDR range matching

Machine Learning

  • • Beacon classifier model
  • • Anomaly detection
  • • Ensemble predictions
  • • Adaptive learning

Advanced Reporting

  • • HTML report export
  • • PDF generation
  • • Enhanced JSON format
  • • Professional IR reports

Historical Analysis

  • • Automatic history tracking
  • • Trend analysis
  • • Similar pattern detection
  • • Percentile comparison

Custom Rules Engine

  • • IP-based rules
  • • CIDR range support
  • • Import/export rules
  • • Configurable confidence

Enhanced Detection

  • • Multi-factor scoring
  • • MITRE ATT&CK mapping
  • • Framework fingerprinting
  • • Entropy analysis

Keyboard Shortcuts

Ctrl+H View History    Ctrl+E Export Report