Falco Rules Logo

Falco Rules

0
Free
Updated 11 March 2025
Visit Website

This repository contains officially managed Falco Rules by The Falco Project, pre-defined detections for security threats, abnormal behaviors, and compliance-related monitoring. Users can modify community-contributed rules or create custom ones, focusing on syscalls and container events. Stay updated with the Rules Overview Document and release notes for evolving threats and systems.

FEATURES

SIMILAR TOOLS

A network detection and response solution that uses AI and machine learning to monitor network traffic, identify malicious behavior, and connect related security events to reveal attack patterns without requiring endpoint agents.

A TCP-based traceroute implementation that bypasses firewall filters to trace the path to a destination.

netsniff-ng is a free Linux networking toolkit with zero-copy mechanisms for network development, analysis, and auditing.

Ensnare is a gem plugin for Ruby on Rails that enables quick deployment of a malicious behavior detection and response scheme using Honey Traps and Trap Responses.

Cilium is a networking, observability, and security solution with an eBPF-based dataplane.

Snort 3 is the next generation Snort IPS with enhanced features and improved cross-platform support.

Fast, smart, effective port scanner with extensive extendability and adaptive learning.

A honeypot system designed to detect and analyze potential security threats

An information gathering tool for DNS, subdomains, ports, and directories enumeration.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

Copyright © 2025 - All rights reserved