There are 24 repositories under ids topic.
CrowdSec - the open-source and participative security solution offering crowdsourced protection against malicious IPs and access to the most advanced real-world CTI.
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine developed by the OISF and the Suricata community.
A small PHP library to generate YouTube-like ids from numbers. Use it when you don't want to expose your database ids to the user.
A small JavaScript library to generate YouTube-like ids from numbers.
Security Onion 16.04 - Linux distro for threat hunting, enterprise security monitoring, and log management
WIFI / LAN intruder detector. Check the devices connected and alert you with unknown devices. It also warns of the disconnection of "always connected" devices
A curated list of amazingly awesome Cybersecurity datasets
A Suricata based NDR distribution
CLOSE ACCESS DENIAL.
🤖 Id obfuscation based on Knuth's multiplicative hashing method for PHP.
Suricata IDS rules 用来检测红队渗透/恶意行为等,支持检测CobaltStrike/MSF/Empire/DNS隧道/Weevely/菜刀/冰蝎/挖矿/反弹shell/ICMP隧道等
Wazuh - Docker containers
Slips, a free software behavioral Python intrusion prevention system (IDS/IPS) that uses machine learning to detect malicious behaviors in the network traffic. Stratosphere Laboratory, AIC, FEL, CVUT in Prague.
Wazuh - Ruleset
Plugins for Wazuh Dashboard
teler-waf is a Go HTTP middleware that protects local web services from OWASP Top 10 threats, known vulnerabilities, malicious actors, botnets, unwanted crawlers, and brute force attacks.
Wazuh - Ansible playbook
idstools: Snort and Suricata Rule and Event Utilities in Python (Including a Rule Update Tool)
The tool for updating your Suricata rules.
🚌 Threat Bus – A threat intelligence dissemination layer for open-source security tools.
Computer interpretable (XML) standard to define Information Delivery Specifications for BIM (mainly used for IFC)
Machine Learning for Network Intrusion Detection & Misc Cyber Security Utilities
A curated list of awesome things related to Suricata
gonids is a library to parse IDS rules, with a focus primarily on Suricata rule compatibility. There is a discussion forum available that you can join on Google Groups: https://groups.google.com/forum/#!topic/gonids/
Suricata rules for network anomaly detection