Showing 35 of 359 projects
A medium interaction SSH honeypot designed to log brute force attacks and attacker shell interactions.
A whitelisting proxy that filters dangerous Tor control protocol commands to protect anonymity.
A collection of honeypot service emulators written in Go for improved security and performance.
Community-maintained style guide for Suricata rules and configuration files.
A Crystal shard wrapper for the sslscan utility to perform SSL/TLS security scans.
A lightweight honeypot written in Go that emulates SSH and Telnet services to log attacker activity.
Terraform module to deploy Suricata IDS with Google Cloud packet mirroring for network traffic inspection.
Ansible-based automation for mass deployment and updates of Suricata intrusion detection and prevention systems.
A real-time Suricata alert processor that automatically blocks malicious IPs on MikroTik routers via SSH.
A Suricata output plugin that writes Eve JSON events to Redis without blocking the main thread.
A simple Perl honeypot that creates fake TCP/UDP servers to monitor and log malicious network traffic.
A Docker-deployed honeypot that detects port scanning attempts by exposing fake services.
A medium interaction SSH honeypot that logs brute force attacks and attacker shell interactions in Python.
A Common Lisp library for manipulating IP addresses, subnets, ranges, and sets with a concise reader macro syntax.
A proof-of-concept SMTP honeypot that uses GPT-3.5 to generate realistic email responses.
A Docker-based training environment for learning Suricata network intrusion detection through hands-on PCAP replay.
A Node.js FTP honeypot that captures malicious file uploads from bots and scanners.
A Twisted-based honeypot for detecting and logging network attacks.
Benchmarking tool for Scapy network packet manipulation library performance across versions.
A covert communication channel that encodes data into DNS cache timing differences.
A curated set of Suricata intrusion detection and prevention system (IDPS) rules published by QuadrantSec.
Automatically updates a pinned GitHub gist with Shodan.io exposure statistics for your public IP.
A honeypot for detecting and analyzing unauthorized access attempts.
A software-defined networking honeypot that captures and analyzes malicious traffic by simulating vulnerable network services.
A probing tool that generates controlled network traffic to verify if security sensors are receiving all relevant traffic in corporate networks.
A SOCKS5 proxy that enforces constant bandwidth to Tor, blending real traffic with cover traffic to defeat timing analysis.
A CLI tool that generates Suricata rules from IOCs in JSON, CSV, or flags using customizable templates.
A Visual Studio Code extension providing IntelliSense, syntax checking, and auto-completion for Suricata signature files.
Enterprise-grade intrusion detection system integrating Suricata IDS directly into servers for deep network visibility and threat detection.
A low-interaction honeypot designed to detect and analyze network attacks with minimal resource usage.
A Zabbix plugin that monitors Suricata IDS/IPS performance metrics and alerts in real-time.
A Perl tool that ingests EVE JSON logs from Suricata and Sagan into PostgreSQL for structured querying and analysis.
A pure Ada implementation of the SipHash pseudorandom function optimized for speed on short messages.
A Zsh plugin that simplifies AdGuard VPN CLI usage with human-friendly commands and tab completion.
Ansible role for deploying Suricata IDS/IPS from stretch-backports on Debian 9 systems.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.