Skip to content

Real Intelligence Threat Analysis (RITA)

Network Security

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

Go Latest v5.1.2 · 2mo ago Security brief →

Features

  • Detects beaconing behavior in network traffic
  • Identifies long‑duration connections
  • Searches for DNS tunneling covert channels
  • Queries threat‑intel feeds for suspicious domains and hosts

Recent releases

View all 2 releases →
v5.1.2 New feature
Notable features
  • Added configurable limits for available CPU cores during importing
Full changelog

What's Changed

  • Installer and Import Logic Updates by @lisaSW in https://github.com/activecm/rita/pull/90
  • Simplify installer and update CI by @lisaSW in https://github.com/activecm/rita/pull/95
  • Update analysis hash filters to use WHERE IN by @caffeinatedpixel in https://github.com/activecm/rita/pull/98
  • Limits for available CPU cores during importing by @pawelfloryan in https://github.com/activecm/rita/pull/97

New Contributors

  • @pawelfloryan made their first contribution in https://github.com/activecm/rita/pull/97

Full Changelog: https://github.com/activecm/rita/compare/v5.1.0...v5.1.2

v5.1.1 Bug fix

Improved installer reliability by removing forced system reboots, switched to pipx for Ansible, enhanced threat intelligence source failure handling, and fixed permission flag checks to prevent import failures.

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

About

Stars
602
Forks
66
Languages
Go Shell Python

Install & Platforms

Install via
docker shell-script
Platforms
linux

Beta — feedback welcome: [email protected]