Top: Computers: Security: Intrusion Detection Systems: Products and Tools: Open Source  (23)


Related Categories:


Giga Bits (more) OpenBSD snort.org 01
5 i386 detection system 08
10 FreeBSD 17 kernel

Chkrootkit
Provides open source application to check for presence of rootkits installed on
Linux/Unix machines. Links to security related sites.
www.chkrootkit.org - cached


Snort
A free lightweight network intrusion detection system for UNIX and Windows.
www.snort.org - cached


Fail2Ban
fail2ban is a POSIX/Linux tool used to ban IP addresses that generate too many
password failures. ssh, iptables, ipfwadm and ipfw are currently supported.
Search in Category: Computers: Open Source: Project Hosting
Search in Category: Computers: Open Source: Software
Search in Category: Computers: Systems: Apple: Macintosh: Development: Sources
www.sourceforge.net/projects/fail2ban - cached


LIDS Project - Secure Linux System
LIDS is an enhancement for the Linux kernel written by Xie Huagang and Philippe
Biondi. It implements several security features that are not in the Linux kernel
natively. Some of these include: mandatory access controls (MAC), a port scan
detector, file protection (even from root), and process protection.
www.lids.org - published: Jan 24 2008 - cached


Passive OS Fingerprinting (pOf)
An advanced passive OS/network fingerprinting utility for use in IDS environments,
honeypots environments, firewalls and servers.
lcamtuf.coredump.cx/p0f.shtml - published: Sep 06 2006 - cached


PreludeIDS Technologies
Distributed hybrid IDS framework, that collects and aggregates event reports from
available security systems, and analyses them on a central system.
www.prelude-ids.org - cached


Rootkit Hunter
Open-source GPL rootkit scanner for Unix-like systems. Scans for rootkits,
trojans, backdoors and local exploits. Tests include scanning of plaintext and
binary files for MD5 hash comparisons, default rootkit files, binary permissions,
suspect LKM/KLD module strings, and hidden files.
www.rootkit.nl - cached


Snortattack
An intrusion protection system in the form of a bash shell script that is designed
to make the installation of Snort in inline mode on Fedora or Debian as easy as
possible.
www.snortattack.org - cached


Systrace (Interactive Policy Generation for System Calls)
Systrace enforces system call policies for applications by interactively
constraining the application's access to the system (*bsd and linux). Systrace is
able to monitor daemons on remote machines and generate warnings at a central
location.
Search in Category: Computers: Software: Operating Systems: Unix: BSD: OpenBSD: People
Search in Category: Reference: Education: Colleges and Universities: North America: United States: Michigan: University of Michigan: Research
www.citi.umich.edu/u/provos/systrace - published: Aug 01 2003 - cached


Advanced Intrusion Detection Environment
AIDE is a file integrity checker that supports regular expressions. Licensed with
GPL.
www.cs.tut.fi/~rammer/aide.html - cached


Honeyd
Small daemon that creates virtual hosts on a network (honeypot). Can be used as a
virtual honeynet or for network monitoring. For *BSD, GNU/Linux, and Solaris.
Search in Category: Computers: Security: Honeypots and Honeynets
Search in Category: Computers: Software: Operating Systems: Unix: BSD: OpenBSD: People
Search in Category: Reference: Education: Colleges and Universities: North America: United States: Michigan: University of Michigan: Research
www.citi.umich.edu/u/provos/honeyd - published: Feb 19 2006 - cached


IDABench
IDABench is a pluggable framework for intrusion analysis built upon the Naval
Surface Warfare Center, Dahlgren Division's SHADOW versions 1.7 and 1.8. Scripts
can be extended via plugins that pass packet data to (and output from) most
libpcap-based tools.
idabench.ists.dartmouth.edu


Panoptis
Network-IDS that detects and stops DoS/DDoS attacks by using real-time Cisco
NetFlow data.
panoptis.sourceforge.net - published: Nov 27 2006 - cached


QuIDScor IDS/VA correlation
QuIDScor is an Open Source project demonstrating the value in correlating
information between Intrusion Detection Systems (such as Snort) and vulnerability
assessment and management platforms such as QualysGuard.
quidscor.sourceforge.net - cached


Shadow Intrusion and Network Analysis
Shadow is an intrusion-detection system from the Naval Surface Warfare Center,
shows promise in detecting previously unknown attacks for which no known detection
signatures exist.
Search in Category: Computers: Security: Research
Search in Category: Science: Math: Applications: Communication Theory: Cryptography: Research Groups
Search in Category: Society: Issues: Terrorism: Cyber
www.ists.dartmouth.edu/IRIA/projects/d_shadow.htm - cached


The Osiris Scripts
A tripwire-like utility which uses MD5 to check files for modifications.
osiris.shmoo.com - cached


ACID (Analysis Console for Intrusion Databases)
Powerful PHP-based data analysis tool for network security events captured by many
common IDS tools, including snort and tcpdump.
www.andrew.cmu.edu/~rdanyliw/snort/snortacid.html - cached


Firestorm Network Intrusion Detection System
Firestorm is a high-performance GPL-licensed network intrusion detection system
(NIDS). Features include being fully pluggable, easily configurable, and an
extremely scalable signature engine.
www.scaramanga.co.uk/firestorm - published: Feb 08 2004 - cached


LAk Intrusion Prevention System
A single compilation of source, binaries, scripts and whitepapers on intrusion
prevention systems. The aim is to quickly establish a working IPS within minutes.
lak-ips.sourceforge.net - cached


sLink project
sLink consists of a daemon and a suite of cgi programs which provide a web
administration interface to an EDM/BOSCH Solution16 Alarm Panel.
slink.sourceforge.net - cached


Snortalog
Perl-based log analysis tool that summarizes network security events from any
native snort database format.
jeremy.chartier.free.fr/snortalog - published: Jun 13 2006 - cached


SnortSMS Project
A configurable web-base administration console written in PHP which can remotely
manage, control, and monitor multiple Snort based Intrusion Detection System
sensors.
snortsms.sourceforge.net - cached


Streamline
An open source stream-based operating system I/O subsystem that minimizes copying
and context switching and moves I/O processing to the most suitable resource. News,
downloads, documentation and forum.
Search in Category: Reference: Education: Colleges and Universities: Europe: Netherlands: Vrije Universiteit Amsterdam
www.few.vu.nl/~wdb/streamline - published: Aug 01 2004 - cached




Try your search on google   yahoo   msn   teoma   wisenut   dmoz  

Help build the largest human-edited directory on the web.
Submit a Site - Open Directory Project - Become an Editor