Showing 35 of 359 projects
A whitelisting proxy that filters dangerous Tor control protocol commands to protect anonymity.
Community-maintained style guide for Suricata rules and configuration files.
A collection of honeypot service emulators written in Go for improved security and performance.
A medium interaction SSH honeypot designed to log brute force attacks and attacker shell interactions.
A lightweight honeypot written in Go that emulates SSH and Telnet services to log attacker activity.
A Crystal shard wrapper for the sslscan utility to perform SSL/TLS security scans.
Terraform module to deploy Suricata IDS with Google Cloud packet mirroring for network traffic inspection.
A Suricata output plugin that writes Eve JSON events to Redis without blocking the main thread.
A real-time Suricata alert processor that automatically blocks malicious IPs on MikroTik routers via SSH.
A Docker-deployed honeypot that detects port scanning attempts by exposing fake services.
Ansible-based automation for mass deployment and updates of Suricata intrusion detection and prevention systems.
A simple Perl honeypot that creates fake TCP/UDP servers to monitor and log malicious network traffic.
A medium interaction SSH honeypot that logs brute force attacks and attacker shell interactions in Python.
A proof-of-concept SMTP honeypot that uses GPT-3.5 to generate realistic email responses.
A Common Lisp library for manipulating IP addresses, subnets, ranges, and sets with a concise reader macro syntax.
A Docker-based training environment for learning Suricata network intrusion detection through hands-on PCAP replay.
A Twisted-based honeypot for detecting and logging network attacks.
A Node.js FTP honeypot that captures malicious file uploads from bots and scanners.
A covert communication channel that encodes data into DNS cache timing differences.
A honeypot for detecting and analyzing unauthorized access attempts.
A software-defined networking honeypot that captures and analyzes malicious traffic by simulating vulnerable network services.
A curated set of Suricata intrusion detection and prevention system (IDPS) rules published by QuadrantSec.
Automatically updates a pinned GitHub gist with Shodan.io exposure statistics for your public IP.
Benchmarking tool for Scapy network packet manipulation library performance across versions.
A low-interaction honeypot designed to detect and analyze network attacks with minimal resource usage.
A SOCKS5 proxy that enforces constant bandwidth to Tor, blending real traffic with cover traffic to defeat timing analysis.
A CLI tool that generates Suricata rules from IOCs in JSON, CSV, or flags using customizable templates.
A Visual Studio Code extension providing IntelliSense, syntax checking, and auto-completion for Suricata signature files.
Enterprise-grade intrusion detection system integrating Suricata IDS directly into servers for deep network visibility and threat detection.
A probing tool that generates controlled network traffic to verify if security sensors are receiving all relevant traffic in corporate networks.
A Zabbix plugin that monitors Suricata IDS/IPS performance metrics and alerts in real-time.
A pure Ada implementation of the SipHash pseudorandom function optimized for speed on short messages.
Ansible role for deploying Suricata IDS/IPS from stretch-backports on Debian 9 systems.
A Zsh plugin that simplifies AdGuard VPN CLI usage with human-friendly commands and tab completion.
A Perl tool that ingests EVE JSON logs from Suricata and Sagan into PostgreSQL for structured querying and analysis.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.