Showing 28 of 28 projects
An open-source, participative security engine that detects and blocks malicious IPs using crowdsourced threat intelligence.
A generic and open signature format for describing log event detections, shareable across SIEM systems.
A generic and open signature format for describing log event detections, shareable across SIEM systems.
A Linux distribution for threat hunting, enterprise security monitoring, and log management.
A Linux distribution for network detection and response (NDR) built around Suricata, providing a complete NDR platform.
A PHP library for obfuscating integer IDs using Knuth's multiplicative hashing method, generating reversible integer hashes.
A Go library for generating super short, fully unique, non-sequential, and URL-friendly IDs at high speed.
A web-based GUI for viewing and managing Suricata EVE security events stored in Elasticsearch or SQLite.
A Go HTTP middleware that protects web services from OWASP Top 10 threats, known vulnerabilities, malicious actors, and brute force attacks.
A Docker image for Suricata, enabling easy deployment of the network intrusion detection and prevention system.
idstools: Snort and Suricata Rule and Event Utilities in Python (Including a Rule Update Tool)
A pub-sub broker for threat intelligence data that connects open-source security tools like OpenCTI, MISP, Zeek, and VAST.
A curated list of awesome tools, libraries, dashboards, and resources for the Suricata intrusion detection/prevention system.
A research project providing tools and detection rules for analyzing and simulating Quantum Insert network attacks.
A Go library for parsing and manipulating Snort and Suricata IDS/IPS rules with Suricata compatibility focus.
Suricata rules for network anomaly detection and threat hunting.
A command-line tool for fuzzing network protocols by automating packet modifications to test firewall and IDS evasion.
A decentralized AI security mesh that provides collective defense, where threat detection on any node protects all nodes within 30 seconds.
A repository of sample Suricata eve.json log files generated from various network pcap datasets for security analysis and learning.
A pure Python parser and generator for Snort and Suricata intrusion detection rules.
A curated collection of open-source and commercial rulesets for Suricata and Snort network intrusion detection systems.
A simple low-interaction port monitoring honeypot.
Suricata rulesets that detect and block phishing attacks using malicious URLs and domains from community threat feeds.
An experimental Rust parser for Suricata rules that converts them into structured JSON/YAML representations.
Terraform module to deploy Suricata IDS with Google Cloud packet mirroring for network traffic inspection.
A Suricata output plugin that writes Eve JSON events to Redis without blocking the main thread.
A curated set of Suricata intrusion detection and prevention system (IDPS) rules published by QuadrantSec.
A LibreNMS JSON SNMP extend and Nagios-style check for monitoring Suricata intrusion detection system statistics.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.