SSHGuard Logo

SSHGuard

0
Free
Visit Website

SSHGuard protects hosts from brute-force attacks by monitoring system logs, detecting attacks, and blocking attackers using a firewall. It works by monitoring system log files and journal logs from various sources like cockpit, Common Log Format, macOS log, metalog, multilog, raw log files, syslog, syslog-ng, and systemd journal. SSHGuard's parser is fast, sandboxed, and secure, as it compiles attack signatures into a full lexical analyzer that does not slow down with more signatures, runs as a separate unprivileged process, and is not susceptible to regular expression denial of service attacks.

FEATURES

ALTERNATIVES

Firewall, Blackhole, and Privatizing Proxy for macOS with comprehensive security features.

Network Dump data Displayer and Editor framework for tcpdump trace files manipulation.

A simple honeypot that opens a listening socket and waits for connection attempts, with configurable reply and event handling

A WebSocket Manipulation Proxy with a user interface to capture, intercept, and send custom messages for WebSocket and Socket.IO communications.

A tool for enumerating subdomains of a given domain

Detects and prevents SSRF attacks

A simple Docker-based honeypot to detect port scanning

Mass IP port scanner for Internet-scale scanning with high speed and flexibility.