Google Directory
Directory
  Directory Help
Search only in Open SourceSearch the Web  

Open Source
  Computers > Security > Intrusion Detection Systems > Products and Tools > Open Source   Go to Directory Home  

Related Category:
    Computers > Security > Products and Tools > Open Source  (9)

Web Pages
Viewing in Google PageRank order               View in alphabetical order
  Snort http://www.snort.org/
A free lightweight network intrusion detection system for UNIX and Windows.
  Chkrootkit http://www.chkrootkit.org/
Provides open source application to check for presence of rootkits installed on Linux/Unix machines. Links to security related sites.
  Advanced Intrusion Detection Environment http://www.cs.tut.fi/~rammer/aide.html
AIDE is a file integrity checker that supports regular expressions. Licensed with GPL.
  Shadow Intrusion and Network Analysis http://www.ists.dartmouth.edu/IRIA/projects/d_shadow.htm
Shadow is an intrusion-detection system from the Naval Surface Warfare Center, shows promise in detecting previously unknown attacks for which no known detection signatures exist.
  Honeyd http://www.citi.umich.edu/u/provos/honeyd/
Small daemon that creates virtual hosts on a network (honeypot). Can be used as a virtual honeynet or for network monitoring. For *BSD, GNU/Linux, and Solaris.
  The Osiris Scripts http://osiris.shmoo.com/
A tripwire-like utility which uses MD5 to check files for modifications.
  PreludeIDS Technologies http://www.prelude-ids.org/
Distributed hybrid IDS framework, that collects and aggregates event reports from available security systems, and analyses them on a central system.
  LIDS Project - Secure Linux System http://www.lids.org
LIDS is an enhancement for the Linux kernel written by Xie Huagang and Philippe Biondi. It implements several security features that are not in the Linux kernel natively. Some of these include: mandatory access controls (MAC), a port scan detector, file protection (even from root), and process protection.
  Passive OS Fingerprinting (pOf) http://lcamtuf.coredump.cx/p0f.shtml
An advanced passive OS/network fingerprinting utility for use in IDS environments, honeypots environments, firewalls and servers.
  Systrace (Interactive Policy Generation for System Calls) http://www.citi.umich.edu/u/provos/systrace/
Systrace enforces system call policies for applications by interactively constraining the application's access to the system (*bsd and linux). Systrace is able to monitor daemons on remote machines and generate warnings at a central location.
  Rootkit Hunter http://www.rootkit.nl/
Open-source GPL rootkit scanner for Unix-like systems. Scans for rootkits, trojans, backdoors and local exploits. Tests include scanning of plaintext and binary files for MD5 hash comparisons, default rootkit files, binary permissions, suspect LKM/KLD module strings, and hidden files.
  Snortattack http://snortattack.org/
An intrusion protection system in the form of a bash shell script that is designed to make the installation of Snort in inline mode on Fedora or Debian as easy as possible.
  Panoptis http://panoptis.sourceforge.net
Network-IDS that detects and stops DoS/DDoS attacks by using real-time Cisco NetFlow data.
  Snortalog http://jeremy.chartier.free.fr/snortalog/
Perl-based log analysis tool that summarizes network security events from any native snort database format.
  Firestorm Network Intrusion Detection System http://www.scaramanga.co.uk/firestorm/
Firestorm is a high-performance GPL-licensed network intrusion detection system (NIDS). Features include being fully pluggable, easily configurable, and an extremely scalable signature engine.
  QuIDScor IDS/VA correlation http://quidscor.sourceforge.net
QuIDScor is an Open Source project demonstrating the value in correlating information between Intrusion Detection Systems (such as Snort) and vulnerability assessment and management platforms such as QualysGuard.
  Fail2Ban http://sourceforge.net/projects/fail2ban/
fail2ban is a POSIX/Linux tool used to ban IP addresses that generate too many password failures. ssh, iptables, ipfwadm and ipfw are currently supported.
  IDABench http://idabench.ists.dartmouth.edu
IDABench is a pluggable framework for intrusion analysis built upon the Naval Surface Warfare Center, Dahlgren Division's SHADOW versions 1.7 and 1.8. Scripts can be extended via plugins that pass packet data to (and output from) most libpcap-based tools.
  SnortSMS Project http://snortsms.sourceforge.net/
A configurable web-base administration console written in PHP which can remotely manage, control, and monitor multiple Snort based Intrusion Detection System sensors.
  LAk Intrusion Prevention System http://lak-ips.sourceforge.net/
A single compilation of source, binaries, scripts and whitepapers on intrusion prevention systems. The aim is to quickly establish a working IPS within minutes.
  sLink project http://slink.sourceforge.net
sLink consists of a daemon and a suite of cgi programs which provide a web administration interface to an EDM/BOSCH Solution16 Alarm Panel.
  ACID (Analysis Console for Intrusion Databases) http://www.andrew.cmu.edu/~rdanyliw/snort/snortacid.html
Powerful PHP-based data analysis tool for network security events captured by many common IDS tools, including snort and tcpdump.
  Streamline http://www.few.vu.nl/~wdb/streamline/
An open source stream-based operating system I/O subsystem that minimizes copying and context switching and moves I/O processing to the most suitable resource. News, downloads, documentation and forum.

Help build the largest human-edited directory on the web.
Submit a Site - Open Directory Project - Become an Editor

Modified by Google - ©2008 Google
Advertise with Us - Jobs, Press, Cool Stuff...