Alternatives
Products that do what Ahtapot does
IOC Analysis | Fast Threat Intel for Security Pros
- 1

- 2

- 3IA
2016 · ipalyzer.com
- 4

- 5

- 6CC
Dear HN community! Looking forward to hearing your feedback on ACE (assured confidential execution), technology that implements VM-based trusted execution environment (TEE) for embedded RISC-V systems with focus on a formally verified and auditable firmware. We target high-assurance systems that can benefit from compartmentalization and hardware-backed isolation. The key ingredient called security monitor (firmware) is implemented in Rust. The formal specification is defined as annotations directly in code and gets translated to Coq using RefinedRust automation. ACE design is now part of the…
2025 · github.com
- 7

- 8
- 9AM
I made an open source, MIT license Typescript library based on some of the latest research that generates prompt injection attacks. It is a super minimal/lightweight and designed to be super easy to use. Keen to hear your thoughts and please be responsible and only pen test systems where you have permission to pen test!
2025 · prompt-injector.blueprintlab.io
- 10

AURA is a production-tested SRE agent platform you can deploy in minutes. AURA handles the guardrails, APIs, state management, streaming, and failure handling required to put AI to work safely on production infrastructure. - mezmo/aura
4d ago · github.com
- 11

- 12

- 13RA
Hi HN, We’re building security tooling around agentic AI systems. Today, we're releasing our public MCP catalog with detailed risk analysis for every MCP server we've found on the internet: https://mcp.armor1.ai/mcp-directory We all love agents and the power that MCPs unlock: suddenly your AI assistant can query databases, manage files, call APIs, and interact with the real world. But when we started adopting MCPs ourselves, we kept running into the same nagging questions: Is this MCP safe? Where is my data actually going? Could it execute destructive actions? Is it…
Feb 2026 · mcp.armor1.ai
- 14IM
2024 · github.com
- 15PC
Phishcan provides crucial threat intelligence, and it currently tracks phishing domains for: • Scotiabank, Desjardins, RBC, Interac… • Telecom providers, provincial power and health services... • Federal & provincial services, CRA, Canada Post, Service Canada, Revenue Québec... How Phishcan works: • Parsing millions of domains: Continuously scanning and analyzing vast numbers of domains to detect suspicious patterns and potential phishing sites. • Monitoring threat actors : close watch on cyber‑criminal infrastructures and their new domain registrations. • Data enrichment : adding contextual…
Sep 2025 · phishcan.com
- 16

- 17

- 18IB
I built a GitHub app that detects it in pull requests, notifies or blocks them. Alongside it, I published a Semgrep ruleset for any stage of the CI/CD. I started this after getting frustrated by all the FUD around malicious code - lots of noise, little effort to solve it. Having said that, it's still a major attack vector - a stored RCE, with the codebase itself as the sink. Feedback is appreciated. The app, PRevent - https://github.com/apiiro/PRevent The ruleset: https://github.com/apiiro/malicious-code-ruleset The research:…
2025 · github.com
- 19RA
Hi HN! I built RustNet, a Terminal UI based network monitor written in Rust that shows real-time connections with process identification and protocol detection. What may make it interesting: • Deep packet inspection for HTTP, HTTPS/TLS (with SNI), DNS, and QUIC protocol detection • Process identification using eBPF on Linux (experimental) and PKTAP on macOS which does also catch short-lived processes that polling procfs or lsof would miss • Multi-threaded packet processing with lock-free data structures for the UI • Cross-platform (Linux, macOS, Windows but process identification so far…
Sep 2025 · github.com
- 20IU
Hey HN, We built IPAware (https://ipaware.io) - an IP intelligence API that doesn't charge per request. What it does: - IP geolocation (country, region, city, coordinates, timezone) - Threat detection (VPN/Proxy/Tor, risk scoring, datacenter detection) - ASN/ISP data - Clean JSON responses Why we built this: Every IP lookup service we tried had the same problem - you start small, your app grow and suddenly you're paying hundreds for what should be a commodity lookup. The metering anxiety is real. We wanted something we could integrate without worrying about the bill…
Feb 2026
- 21BG
We originally set out to solve complex debugging headaches and useless alerts caused by traditional security scanners in our own projects. Static Analysis (SAST) flagged too much noise because it couldn't verify runtime context, while Dynamic Analysis (DAST) missed internal logic bugs because it treated the app like a black box. We built a CLI tool to bridge this gap using grey box testing from a red team approach. We use internal knowledge of the codebase to guide parallel execution, allowing us to find complex or hidden logic errors and attack paths standard linters/scanners miss. The…
Dec 2025 · bloodhoundsecurity.ca
- 22

- 23

Affordable darkweb and attack surface management for SMEs
Mar 2026 · securityscanner.ai
- 24

Live honeypot API — 211k attacks detected, 3697 IPs blocked
Mar 2026 · rapidapi.com
Ranked by how close each launch is in meaning, then by votes. Refine with a description →