
DShield-SIEM
DShield Sensor Log Collection with ELK

DShield Sensor Log Collection with ELK

Dockerized honeypot for CVE-2021-44228.

Open-source deception platform that turns any Linux machine into a high-signal canary. Deploy tripwire sensors on files, ports, and network services…

eBPF-based runtime security agent for Kubernetes that detects unknown processes and file changes, enforces pre-registered constraints, and automates…

Anti-Virus for K8s. Protect your Applications running on Kubernetes from malicious attacks with pre-registered source code, runtime processes…

This Repository Includes Kubernetes manifest files for configuration of Honeypot system and Falco IDS in K8s environment. There are also Demo…

⭐ ⭐ Distributed tcpdump for cloud native environments ⭐ ⭐

Experimental Decoy Broker

By Kprobe technology Open Source Host-based Intrusion Detection System(HIDS), from E_Bwill.

Easy to configure Honeypot for Blue Team

Open-source XDR and SIEM platform for threat detection, log analysis, file integrity monitoring, vulnerability assessment, and compliance management…

Centralized network visibility and continuous asset discovery. Monitor devices, detect change, and stay aware across distributed networks.

PoC and Detection for CVE-2024-21626

An eBPF detection program for CVE-2022-0847

Softsensor Docker prototype

SO-CRATES: Security Onion Containerized Rapid Analysis of Threats, Evil, and Sus!

Sigma Rules Engine inside the Linux Kernel using eBPF. Focusing on prevention capabilities