Awesome Docker
Section: Security Articles
Entry
Appears in 4 awesome lists
an open source security auditing tool for Linux/Unix.
Section: Security Articles
Section: GNU/Linux Utilities · Auditing tool for UNIX-based systems.
Section: IDS / IPS / Host IDS / Host IPS · an open source security auditing tool for Linux/Unix.
Section: GNU/Linux · script to check the configuration of Linux hosts
Snort is a free and open source network intrusion prevention system (NIPS) and network intrusion detection system (NIDS)created by Martin Roesch in 1998. Snort is now developed by Sourcefire, of which Roesch is the founder and CTO. In 2009, Snort entered InfoWorld's Open Source Hall of Fame as one…
Wazuh is a free and open source platform used for threat prevention, detection, and response. It is capable of monitoring file system changes, system calls and inventory changes.
(formerly Bro) is an open source software platform that provides compact, high-fidelity transaction logs, file content, and fully customized output to analysts, from the smallest home office to the largest, fastest research and commercial networks. From the FAQ: "Zeek provides a comprehensive…
CrowdSec is a free, modern & collaborative behavior detection engine, coupled with a global IP reputation network. It stacks on Fail2Ban's philosophy but is IPV6 compatible and 60x faster (Go vs Python), uses Grok patterns to parse logs and YAML scenario to identify behaviors. CrowdSec is…
A book on understanding the Docker security defaults, how to improve them (theory and practical), along with many tools and techniques.
Comprehensive Open Source HIDS. Not for the faint of heart. Takes a bit to get your head around how it works. Performs log analysis, file integrity checking, policy monitoring, rootkit detection, real-time alerting and active response. It runs on most operating systems, including Linux, MacOS,…
Heuristic reporting on potentially viable exploits for a given GNU/Linux system.