# alphasoc/flightsim

A utility to safely generate malicious network traffic patterns and evaluate controls.

Repository: https://github.com/alphasoc/flightsim
Canonical: https://ross.abutalabs.com/products/flightsim
Homepage: https://alphasoc.com
Language: Go
License: NOASSERTION
License Family: other
Topics: security, testing-tools, monitoring, intrusion-detection
Last push: 2024-04-04T11:25:53+00:00

## Health v2 (maintenance only)
Score: 23/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 0, release rhythm 8, longevity 100
- inputs: {"age_days": 3157, "days_push": 881, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1363, forks 145 (observed 2026-08-28T04:04:30.361795+00:00)

## What it is
flightsim is a lightweight Go CLI utility that safely generates malicious network traffic patterns such as DNS tunneling, DGA domains, C2 callbacks, and SSH exfiltration. Security teams use it to evaluate firewalls, network visibility, and intrusion detection controls.

## Use cases
- test whether my IDS detects C2 traffic
- simulate DNS tunneling to validate monitoring
- generate DGA traffic for security control testing
- verify firewall detects malicious traffic patterns
- test network visibility against simulated exfiltration
- validate security monitoring with safe malicious traffic

## When to choose
- you need to safely test security controls with realistic malicious traffic
- validating IDS/IPS, firewall, or SIEM detection coverage
- red team or security assessment traffic generation

## When to avoid
- you need a full penetration testing framework
- you want passive network monitoring rather than active traffic generation
- you cannot allow outbound internet access from the test host

## Facets
- artifact type: cli-tool
- maturity: active
- function: security, testing, monitoring, cli
- domain: security, penetration-testing, networking, developer-tools
- platform: windows, cross-platform, cli
- tags: traffic-simulation, intrusion-detection, security-controls-testing, dns-tunneling, c2-traffic, dga, go, linux, macos

## Member repositories
- alphasoc/flightsim (main) score 23

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:04:30.361795+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T04:41:24.240919+00:00, confidence not recorded.
  - readme: https://github.com/alphasoc/flightsim (fetched 2026-08-28T04:04:30.361795+00:00, sha a932a2d5742c)
  - homepage: https://alphasoc.com (fetched 2026-08-29T11:58:56.401548+00:00, sha 67e8ebf5c982)
  - site_page: https://docs.alphasoc.com/ (fetched 2026-08-29T11:58:56.411135+00:00, sha 6be8bc16b1e5)
  - site_page: https://alphasoc.com/changelog (fetched 2026-08-29T11:58:56.413158+00:00, sha 7093ed7d4cb5)
  - site_page: https://alphasoc.com/faq (fetched 2026-08-29T11:58:56.414845+00:00, sha d5dea5f6a5fd)
- Data as of 2026-08-30T08:39:29.467469+00:00.
