Technical products

The resources below include datasets and computational tools developed across different projects in which I have participated. They are available for use by the research, education, and professional communities, subject to the license and usage terms provided with each resource.

Dataset · Malicious-content detection

DarkPT-BR

A labeled collection of Brazilian Portuguese posts from Dark Web forums. It provides heuristic, manually reviewed, and model-generated labels for research on malicious-content detection and cyber threat intelligence.

Dataset · Cybercrime and judicial analytics

CyberJustice-TJSP

A dataset of public judicial decisions from the São Paulo Court of Justice related to cybercrime. It includes full text, metadata, topic-modeling labels, and a manually annotated subset for supervised classification.

Software ecosystem · Cybersecurity training

GT-LFI — Learn From Incidents

An open-source ecosystem that turns real security incidents into operational knowledge and practical learning content through anonymization, AI-assisted classification, playbook generation, human validation, and gamified activities.

Platform · IoT security and management

GT IoTEdu

A platform for registering, connecting, monitoring, and protecting IoT devices in institutional networks. It integrates device management, security monitoring, and automated response through firewall policies.

Research framework · Intrusion detection

GenIDS Framework

An experimental framework for studying how machine-learning intrusion-detection systems generalize across network-data domains. It includes flow extraction, dataset standardization, model training, inter-domain evaluation, and reproducibility resources.

Dataset and pipeline · DNS security

DNS-360 Dataset

A curated dataset and experimental pipeline for detecting DNS-based data exfiltration over conventional DNS and DNS over HTTPS. It supports benchmarking, feature engineering, and machine-learning experiments.

Software tool · IoT fingerprinting

IoT-ID

A prototype for identifying IoT devices through deterministic fingerprints derived from active probing and passive TCP/IP traffic analysis. It produces reproducible device identities that do not depend on IP addresses.

Research toolkit · Cyber threat intelligence

Forum Threat Intelligence

A collection of research tools for forum discovery and collection, relational storage, text normalization, malicious-content scoring, temporal topic analysis, and cross-domain evaluation of threat-intelligence models.

Software tool · IoT experimentation

IoT Simulator

A configurable simulator for IoT devices, sensors, batteries, network conditions, and atypical events. It supports large-scale CoAP simulations, MQTT gateways, scheduled scenarios, and live monitoring.