CrowdSec is a free, modern & collaborative behavior detection engine, IPV6 compatible and 60x faster than fail2ban, using Grok patterns and YAML scenarios to identify behaviors, engineered for modern Cloud / Containers / VM-based infrastructures.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A wrapper around jNetPcap for packet capturing with Clojure, available for Linux and Windows.
SSHGuard protects hosts from brute-force attacks by monitoring system logs, detecting attacks, and blocking attackers using a firewall.
A script for extracting network metadata and fingerprints such as JA3 and HASSH from packet capture files or live network traffic.
Arkime is an open-source network capture and analysis tool that provides comprehensive network visibility, facilitating swift identification and resolution of security and network issues.
Open source framework for network traffic analysis with advanced features.
A simpler version of a honeypot that looks for connections from external parties and performs a specific action, usually blacklisting.
A tool for classifying packets into flows based on 4-tuple without additional processing.
A Bluetooth 5 and 4.x sniffer using TI CC1352/CC26x2 hardware with advanced features and Python-based host-side software.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.