suricata-rules

IDS rule set

A repository of high-quality Suricata IDS rules for detecting various malicious activities and behaviors.

Suricata IDS rules 用来检测红队渗透/恶意行为等,支持检测CobaltStrike/MSF/Empire/DNS隧道/Weevely/菜刀/冰蝎/挖矿/反弹shell/ICMP隧道等

GitHub

1k stars
41 watching
292 forks
last commit: over 1 year ago
idssecuritysignaturessuricatasuricata-rule

Related projects:

Repository Description Stars
travisbgreen/hunting-rules Provides Suricata IDS alert rules for detecting network anomalies 153
quadrantsec/suricata-rules A collection of rules and configuration files for Suricata, a network traffic analysis tool 5
aleksibovellan/opnsense-suricata-nmaps Customized Suricata detection rules to identify NMAP scan types 52
jasonish/suricatax-rule-parser-rs A Rust library to parse Suricata security rules and convert them into a higher-level data format 9
m-chrome/py-suricataparser A Python package for parsing and generating Snort/Suricata security rules 27
klingerko/nids-rule-library A collection of various rulesets for network intrusion detection systems 20
dgenzer/surify-cli Tool to generate Suricata rules from various input formats and configurations 3
alienvault-otx/otx-suricata A tool to generate Suricata rules based on indicators from the OTX API 107
google/gonids A library for parsing and optimizing IDS rules 180
jasonish/py-idstools A collection of Python libraries for working with intrusion detection systems. 276
neo23x0/rules A centralized repository of Yara rules for detecting malware and other malicious activities. 10
stamusnetworks/scirius A web application for managing Suricata rulesets and threat hunting 635
sidallocation/suricata-style-guide A collection of guidelines and best practices for coding style and documentation in the Suricata project 7
rarecoil/pantagrule A collection of optimized hashcat rules generated from real-world password compromise data. 390
dgenzer/suricata-highlight-vscode A language colorizer extension for Visual Studio Code that highlights Suricata rules syntax 12