Daemon to ban hosts that cause multiple authentication errors
Intrusion detection
Watch network traffic or hosts for attacks, and report or block what matches.
Changes in this category (RSS)
Side by side
| Tool | Stars | Licence | Terms | Self-hosted | Language | Latest | Last push |
|---|---|---|---|---|---|---|---|
| Fail2ban | 19k | Other | Open source | Yes | Python | 1.1.1 | 2026-09-28 |
| CrowdSec | 15k | MIT | Open source | Yes | Go | v1.8.1 | 2026-10-05 |
| Maltrail | 8.6k | MIT | Open source | Yes | Python | 3.4 | 2026-10-06 |
| Zeek | 8.1k | Other | Open source | Yes | C++ | v9.0.0 | 2026-10-05 |
| Arkime | 7.5k | Apache-2.0 | Open source | Yes | C | v6.8.0 | 2026-10-05 |
| Suricata | 6.7k | GPL-2.0 | Open source | Yes | C | suricata-8.0.7 | 2026-10-04 |
| OSSEC | 5.1k | GPL-2.0 | Open source | Yes | C | 4.4.0 | 2026-10-05 |
| Snort 3 | 3.4k | Other | Open source | Yes | C++ | 3.12.2.0 | 2026-04-23 |
| AIDE | 752 | GPL-2.0 | Open source | Yes | C | v0.19.4 | 2026-09-22 |
9 tools
Open-source IDS/IPS, WAF and bot detection for Linux, Windows, Docker and Kubernetes, with a crowdsourced blocklist of malicious IPs.
Malicious traffic detection system
Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.
Arkime is an open source, large scale, full packet capturing, indexing, and database system.
- Language
- C
- Licence
- Apache-2.0
- Stars
- 7.5k
- Latest
- v6.8.0
- Last push
- 2026-10-05
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine developed by the OISF and the Suricata community.
- Language
- C
- Licence
- GPL-2.0
- Stars
- 6.7k
- Latest
- suricata-8.0.7
- Last push
- 2026-10-04
OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, rootkit detection, real-time alerting and active response.
Snort++
aide source code