MikroTik API
Access to router connections for threat monitoring.
Python project to detect and block network threats on MikroTik routers. Combines API access, threat intelligence, and analysis with a local LLM in Ollama.
Automatic detection and blocking of network threats for ISPs. The project brings together network signals and threat context to support technical operations.
Access to router connections for threat monitoring.
AbuseIPDB and GeoIP provide context for analysis.
Enriches threat analysis and supports signal classification.
Integrates monitoring, analysis, and automatic blocking actions.
Project screenshot and component description. The repository is private.
View full screenshotThe LLM is a supporting layer, not the sole authority for blocking. The working approach includes protecting operational data, reviewing changes, and local validation. Detection and false-positive rates are not published without documented measurements.
Discuss an infrastructure role