Showing 36 of 51 projects
A powerful, easily deployable network traffic analysis tool suite for PCAP files, Zeek logs, and Suricata alerts.
Distributed tcpdump for cloud native environments, capturing and streaming network packets from multiple hosts to a central receiver.
A Linux distribution for network detection and response (NDR) built around Suricata, providing a complete NDR platform.
Scirius is a web application for Suricata ruleset management and threat hunting.
An LLM-powered web honeypot that dynamically crafts realistic HTTP responses to mimic various applications and detect malicious traffic.
A web-based GUI for viewing and managing Suricata EVE security events stored in Elasticsearch or SQLite.
A powerful, easily deployable network traffic analysis tool suite for PCAP files, Zeek logs, and Suricata alerts.
A Docker image for Suricata, enabling easy deployment of the network intrusion detection and prevention system.
idstools: Snort and Suricata Rule and Event Utilities in Python (Including a Rule Update Tool)
A curated list of awesome tools, libraries, dashboards, and resources for the Suricata intrusion detection/prevention system.
A research project providing tools and detection rules for analyzing and simulating Quantum Insert network attacks.
A comprehensive guide for extreme performance tuning of Suricata intrusion detection systems.
A Go library for parsing and manipulating Snort and Suricata IDS/IPS rules with Suricata compatibility focus.
Suricata rules for network anomaly detection and threat hunting.
A comprehensive performance tuning guide for optimizing Suricata IDS/IPS deployments in high-throughput network environments.
A practical classroom course suite teaching cyber defense monitoring using Suricata and Arkime for threat detection and packet analysis.
A web interface for exploring Suricata EVE outputs, designed for CTF players to analyze network flows during attack-defense games.
A language server implementing the Language Server Protocol for Suricata signatures, providing syntax checking, hints, and auto-completion.
Kibana 3 dashboard templates for visualizing Suricata IDS/IPS logs in Logstash/ELK stack.
An RDP honeypot that captures attack telemetry by simulating Windows RDP sessions with virtual machines.
An open-source book providing SOC analysts and threat hunters with practical guidance on using Suricata for network security monitoring.
A fast, extensible event router for processing Suricata's JSON EVE output, designed for high-throughput network security monitoring.
Jupyter notebooks and Python tools for threat hunting and data exploration with Suricata network security data.
Synchronizes threat intelligence indicators from MISP to Suricata datasets and sends alert sightings back to MISP.
A repository of sample Suricata eve.json log files generated from various network pcap datasets for security analysis and learning.
A Suricata syntax highlighter with experimental warning/error detection for Sublime Text.
A pure Python parser and generator for Snort and Suricata intrusion detection rules.
A lightweight C-based data broker that enriches and forwards Suricata/Sagan EVE JSON data to various output destinations.
A curated collection of open-source and commercial rulesets for Suricata and Snort network intrusion detection systems.
A Prometheus exporter that collects and exposes Suricata IDS/IPS metrics via a Unix socket for monitoring and visualization.
A Suricata plugin that outputs Eve JSON events to Apache Kafka for real-time network security monitoring.
Syntax highlighting for Suricata rules in Visual Studio Code.
A command-line tool that formats and syntax highlights Suricata intrusion detection rules for improved readability.
A GUI interface for Suricata IPS on Qubes OS, providing desktop notifications for suspicious network packets.
A Go client library for interacting with Suricata's Unix socket to execute commands and retrieve data.
An experimental Rust parser for Suricata rules that converts them into structured JSON/YAML representations.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.