
coreruleset
Generic attack detection rule set for web application firewalls, protecting against OWASP Top Ten and common vulnerabilities with minimal false…

Generic attack detection rule set for web application firewalls, protecting against OWASP Top Ten and common vulnerabilities with minimal false…

🛡️ Open-source and cloud-native Web Application Firewall (WAF)

Self-hosted WAF and reverse proxy that filters malicious HTTP traffic, blocks SQL injection, XSS, and bot attacks, with rate limiting and dynamic…

High-performance Rust HTTP/HTTPS proxy with active defense: rate limiting, reputation-based access, WAF (anti-bot, anti-injection, path protection),…

Research on CrushFTP AS2 authentication bypass allowing unauthenticated admin access. Includes PoC scripts, detection rules, and technical analysis…

AWS WAF Solver, full reverse implemented in 100% Python & Golang.

Prototype anti-automation system demonstrating bot detection, malformed HTML traps, invisible links, and signature-reversing honeypot techniques for…

A ModSecurity ruleset for detecting potential attacks using CVE-2018-6389