Open-source IDS/IPS, WAF and bot detection for Linux, Windows, Docker and Kubernetes, with a crowdsourced blocklist of malicious IPs.
-
Updated
Sep 28, 2026 - Go
Open-source IDS/IPS, WAF and bot detection for Linux, Windows, Docker and Kubernetes, with a crowdsourced blocklist of malicious IPs.
Projet de fin de formation: infrastructure reseau securisee avec pfSense, PKI, OpenVPN, pfBlockerNG et Snort IDS/IPS.
SentinAI: A localized SOC toolkit and Hybrid IDS/IPS utilizing a dual-engine architecture (Heuristics + ML/IsolationForest) for real-time network threat detection.
Ciclo completo de auditoría, detección y remediación con Wazuh (SIEM), Suricata (IDS), Nmap, Hydra y Metasploit. Mapeo a ISO 27001/27005 y NIST 800-53.
A compact, self-contained lab that demonstrates real-time intrusion detection and automated response using an IDS script (Scapy), Cisco router ACLs (Netmiko), and victim host hardening (Paramiko + iptables).
A SOC lab platform integrating IPS/IDS/WAF using pfSense, WAF, web/database servers, IDS, and ELK, including network topology diagrams, VMware VMnet setup, and IP/subnet design.
Segmented enterprise network lab with pfSense, Suricata IDS/IPS, and attack simulation
Security-focused distributed NAS platform built using Nextcloud, Docker, Grafana, Prometheus, and fail2ban with real-time monitoring, security event logging, brute-force detection, infrastructure observability, and centralized dashboard monitoring.
A modular Python-based SIEM/IPS that monitors system logs in real-time (Sentinel) and automates threat response (SOAR). It features Regex-based log normalization, hybrid event correlation (SSH/Web), and automated firewall blocking integrated with AbuseIPDB and Discord alerts.
Linux UTM Gateway — integrated UTM firewall appliance for Debian: nftables, Suricata IPS, Squid, ClamAV, content and HTTPS filtering, OpenVPN/WireGuard/IPsec, HA cluster. A pfSense / Kerio Control alternative. ISO: https://t.me/Linux_UTM
A cloud-native security lab on AWS that automates threat detection and compliance enforcement. Deploys a 3-tier VPC with Suricata IDS/IPS, ModSecurity WAF, Duo MFA, WireGuard VPN, and ELK Stack — all provisioned via Terraform, configured with Ansible, and continuously validated with InSpec compliance-as-code checks.
PiNetCore - Production-ready Raspberry Pi 5 network appliance. Rust-based packet capture engine with modular plugin architecture, nftables firewall, and TypeScript/React dashboard. Features inline bridge mode, VPN integration (WireGuard/OpenVPN), IDS/IPS support, and centralized logging. Built for home labs and advanced network control.
Projecte intermodular ASIX: Docker, Kubernetes, Helm, Istio, Ansible i Suricata IDS/IPS. Del contenidor local a la producció cloud-native amb ciberseguretat activa.
An AI-native cybersecurity hive — scanning, intrusion detection, sandboxing and attack simulation, each with its own embedded intelligence, orchestrated by two fail-closed AI agents.
Autonomous IDS/IPS with ensemble ML voting, post-quantum cryptography, Kubernetes Zero Trust, self-healing watchdog, and live SOC dashboard
A modular, plug-and-play Intrusion Detection & Prevention platform where AI models and blockchain ledgers hot-swap into a decoupled core engine — real-time monitoring, automated prevention, and tamper-evident logging by design.
SOC-focused fictional network security architecture capstone featuring risk prioritization, segmentation design, firewall/ACL planning, monitoring architecture, and resilience analysis.
Network Security Advanced course notes - CET2883C Santa Fe College
To associate your repository with the ids-ips topic, visit your repo's landing page and select "manage topics."