
snorby
Ruby On Rails Application For Network Security Monitoring
defensive-toolsincident-responseintrusion-detection+2
1.0k3 years ago

Ruby On Rails Application For Network Security Monitoring

A tool to generate Snort rules based on public IP reputation data

Different rules to detect if CVE-2021-31166 is being exploited

IDS/IPS lab for detecting and preventing Apache ActiveMQ RCE (CVE-2023-46604) using GVM, Nmap, Snort, iptables, and UFW.

Snort 3 IDS → IPS lab on Kali. Custom detection rules + iptables enforcement against ICMP recon, Nmap SYN scans, Hydra FTP brute force, and vsftpd…

Pulled Pork for Snort and Suricata rule management (from Google code)

psad: Intrusion Detection and Log Analysis with iptables