GSMcNamara/Floodspark
Floodspark Counterespionage Firewall (CEF) helps you record and block or honeypot reconnaissance or otherwise illegitimate traffic. CEF is like a web application firewall (WAF) but protects against reconnaissance.
PythonNOASSERTION
Issues
- 0
Page refresh when blocked
#62 opened by GSMcNamara - 0
reduce ELK size
#61 opened by GSMcNamara - 0
handle POST params
#59 opened by GSMcNamara - 0
request_path
#58 opened by GSMcNamara - 0
- 0
content-length in GETs
#60 opened by GSMcNamara - 0
Session ID name masking?
#56 opened by GSMcNamara - 0
Do Forward DNS lookup for Googlebot
#55 opened by GSMcNamara - 0
black and whitelist import
#54 opened by GSMcNamara - 1
deploy with lua_code_cache = on
#42 opened by GSMcNamara - 0
fix resty reporting to ELK when in block mode
#51 opened by GSMcNamara - 0
Combined black- and whitelist capability
#53 opened by GSMcNamara - 0
Cache DNS lookup for Googlebot cases
#52 opened by GSMcNamara - 0
Modification to static characteristics
#50 opened by GSMcNamara - 0
RobotsDisallowed
#49 opened by GSMcNamara - 0
CloudScraper
#48 opened by GSMcNamara - 0
Wappalyzer
#47 opened by GSMcNamara - 0
PhantomJS detection
#46 opened by GSMcNamara - 0
gobuster
#45 opened by GSMcNamara - 0
CeWL
#44 opened by GSMcNamara - 0
Persistent tracking (etag, etc)
#13 opened by GSMcNamara - 0
Server/webapp-specific targeted attacks based on real or falsified information
#14 opened by GSMcNamara - 0
Stolen cookie detection
#15 opened by GSMcNamara - 1
- 0
Research SIEM integration
#17 opened by GSMcNamara - 1
Easy update solution
#18 opened by GSMcNamara - 0
Policy config utility
#20 opened by GSMcNamara - 0
- 0
Chrome incognito detection versions 74 and later when not SSL or localhost site
#22 opened by GSMcNamara - 0
Non-browser traffic detection
#24 opened by GSMcNamara - 0
rate limiting for those not whitelisted
#27 opened by GSMcNamara - 0
authorization token
#28 opened by GSMcNamara - 0
Safari private browsing
#32 opened by GSMcNamara - 0
Edge InPrivate
#33 opened by GSMcNamara - 0
- 0
dashboard import object missing error
#36 opened by GSMcNamara - 0
AppScan detection
#38 opened by GSMcNamara - 0
Selenium detection (beyond Chrome)
#39 opened by GSMcNamara - 0
Have any 404s in honeypot redirect to /
#40 opened by GSMcNamara - 0
Sitediff detection
#43 opened by GSMcNamara - 0
Index Lifecycle Policies
#41 opened by GSMcNamara - 0
Dark mode in demo
#37 opened by GSMcNamara - 0
Firefox private browsing
#31 opened by GSMcNamara - 0
SSH auth failed limit/blacklist
#34 opened by GSMcNamara - 0
- 0
create and export demo dashboard
#29 opened by GSMcNamara - 0
Redis for blacklisting?
#23 opened by GSMcNamara - 0
inline lua
#26 opened by GSMcNamara - 1
Wget detection
#19 opened by GSMcNamara - 1
curl detection
#25 opened by GSMcNamara