
psad
psad: Intrusion Detection and Log Analysis with iptables

psad: Intrusion Detection and Log Analysis with iptables

⭐ ⭐ Distributed tcpdump for cloud native environments ⭐ ⭐

Ruby On Rails Application For Network Security Monitoring

Pulled Pork for Snort and Suricata rule management (from Google code)

Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, and rule types

A tool to generate Snort rules based on public IP reputation data

Community Detection Signature Build and Distribution Pipeline for YARA, Suricata, Snort and Sigma

VEDAS-Driven Autonomous Generation of Suricata Rules for CVEs

Different rules to detect if CVE-2021-31166 is being exploited

Snort 3 IDS → IPS lab on Kali. Custom detection rules + iptables enforcement against ICMP recon, Nmap SYN scans, Hydra FTP brute force, and vsftpd…

IDS/IPS lab for detecting and preventing Apache ActiveMQ RCE (CVE-2023-46604) using GVM, Nmap, Snort, iptables, and UFW.