GitHub topics: web-application-firewall
aaPanel/aaWAF
堡塔云WAF,宝塔免费(free)的私有云网站应用防火墙(firewall),基于docker/nginx/lua开发
Language: Go - Size: 15.4 MB - Last synced at: about 2 hours ago - Pushed at: about 14 hours ago - Stars: 435 - Forks: 88

HUAHUAI23/RuiQi
A modern web application firewall (WAF) management system built on top of HAProxy and OWASP Coraza WAF with the Coraza SPOA integration. This system provides a comprehensive backend API for managing HAProxy configurations, Coraza WAF rules, and traffic inspection.
Language: TypeScript - Size: 91.3 MB - Last synced at: about 9 hours ago - Pushed at: about 10 hours ago - Stars: 13 - Forks: 4

0xInfection/Awesome-WAF
🔥 Web-application firewalls (WAFs) from security standpoint.
Language: Python - Size: 29.1 MB - Last synced at: about 17 hours ago - Pushed at: 6 months ago - Stars: 6,637 - Forks: 1,094

EnableSecurity/wafw00f
WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.
Language: Python - Size: 753 KB - Last synced at: 2 days ago - Pushed at: 4 months ago - Stars: 5,639 - Forks: 967

corazawaf/coraza
OWASP Coraza WAF is a golang modsecurity compatible web application firewall library
Language: Go - Size: 29.5 MB - Last synced at: 3 days ago - Pushed at: 5 days ago - Stars: 2,636 - Forks: 257

chaitin/blazehttp
BlazeHTTP 是一款简单易用的 WAF 防护效果测试工具。BlazeHTTP stands as a user-friendly WAF protection efficacy evaluation tool.
Language: Go - Size: 37.4 MB - Last synced at: 3 days ago - Pushed at: 10 months ago - Stars: 811 - Forks: 93

chaitin/SafeLine
SafeLine is a self-hosted WAF(Web Application Firewall) / reverse proxy to protect your web apps from attacks and exploits.
Language: Go - Size: 76.4 MB - Last synced at: 4 days ago - Pushed at: 17 days ago - Stars: 16,274 - Forks: 981

leohearts/awd-watchbird
A powerful PHP WAF for AWD
Language: PHP - Size: 384 KB - Last synced at: 1 day ago - Pushed at: 10 months ago - Stars: 724 - Forks: 93

tempesta-tech/tempesta
All-in-one solution for high performance web content delivery and advanced protection against DDoS and web attacks
Language: C - Size: 21.1 MB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 648 - Forks: 106

casbin/caswaf
HTTP & OAuth Gateway and Web Application Firewall (WAF) based on ModSecurity, online demo: https://door.caswaf.com
Language: Go - Size: 1020 KB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 327 - Forks: 27

bunkerity/bunkerweb
🛡️ Open-source and next-generation Web Application Firewall (WAF)
Language: Python - Size: 563 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 7,921 - Forks: 455

timokoessler/easy-waf-data
This repository provides ip data for the Web Application Firewall EasyWAF.
Language: TypeScript - Size: 176 KB - Last synced at: 2 days ago - Pushed at: 7 days ago - Stars: 3 - Forks: 0

timokoessler/easy-waf
An easy-to-use Web Application Firewall (WAF) for Node.js. Can be used with Express, Fastify, NextJS, NuxtJS ... or plain Node.js http.
Language: TypeScript - Size: 749 KB - Last synced at: 2 days ago - Pushed at: 4 months ago - Stars: 46 - Forks: 4

corazawaf/coraza-spoa
A wrapper for integrating the OWASP Coraza WAF with HAProxy's SPOE filters.
Language: Go - Size: 269 KB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 108 - Forks: 23

teler-sh/teler-proxy
🔐 teler Proxy enabling seamless integration with teler WAF 🛡️ to protect locally running web service against a web-based attacks. 🥷
Language: Go - Size: 3.22 MB - Last synced at: about 2 hours ago - Pushed at: 3 months ago - Stars: 50 - Forks: 9

fabriziosalmi/caddy-waf
Caddy WAF (Regex Rules, IP and DNS filtering, Rate Limiting, GeoIP, Tor, Anomaly Detection)
Language: Go - Size: 8.21 MB - Last synced at: 11 days ago - Pushed at: 11 days ago - Stars: 497 - Forks: 16

akshanthsaik/AI-Driven-Web-Application-Firewall-WAF
AI-powered Web Application Firewall utilizing a Random Forest model to block SQL injection, XSS, and other web attacks. Features real-time proxy integration, an interactive dashboard, and explainable machine learning.
Language: HTML - Size: 25 MB - Last synced at: 13 days ago - Pushed at: 14 days ago - Stars: 1 - Forks: 0

yaencn/safeline-helmchart
长亭雷池WAF开源版-预览版自制HelmChart
Language: Smarty - Size: 734 KB - Last synced at: 16 days ago - Pushed at: 16 days ago - Stars: 9 - Forks: 0

Safe3/uuWAF
An industry-leading free, high-performance, AI and semantic technology Web Application Firewall and API Security Gateway (WAAP) - UUSEC WAF.
Language: C - Size: 2.6 GB - Last synced at: 16 days ago - Pushed at: 16 days ago - Stars: 1,083 - Forks: 118

Smalls1652/waf-rules
My web application firewall rules for ModSecurity. (Mirror)
Size: 19.5 KB - Last synced at: about 21 hours ago - Pushed at: 17 days ago - Stars: 0 - Forks: 0

wallarm/api-firewall
Fast and light-weight API proxy firewall for request and response validation by OpenAPI specs.
Language: Go - Size: 1.58 MB - Last synced at: 18 days ago - Pushed at: 18 days ago - Stars: 609 - Forks: 59

openappsec/openappsec
open-appsec is a machine learning security engine that preemptively and automatically prevents threats against Web Application & APIs. This repo include the main code and logic.
Language: C++ - Size: 94.5 MB - Last synced at: 23 days ago - Pushed at: 24 days ago - Stars: 1,175 - Forks: 87

php-waf/php-waf
A lightweight and configurable PHP WAF extension written in C to block malicious requests.
Size: 15.6 KB - Last synced at: 28 days ago - Pushed at: 30 days ago - Stars: 0 - Forks: 0

Ekultek/WhatWaf
Detect and bypass web application firewalls and protection systems
Language: Python - Size: 401 KB - Last synced at: 30 days ago - Pushed at: 9 months ago - Stars: 2,751 - Forks: 454

wallarm/gotestwaf
An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses
Language: Go - Size: 11.7 MB - Last synced at: about 1 month ago - Pushed at: 3 months ago - Stars: 1,645 - Forks: 228

Janusec/janusec
JANUSEC Application Gateway provides secure access, including reverse proxy, K8S Ingress Controller, Automatic ACME Certificate, WAF, 5-Second Shield, CC Defense, OAuth2 Authentication, Global Server Load Balance, and Cookie Compliance etc. JANUSEC应用网关,提供安全的接入,包括反向代理、K8S Ingress Controller、自动化ACME证书、WAF、5秒盾、CC防御、OAuth2身份认证、GSLB负载均衡与Cookie合规等。
Language: Go - Size: 36.9 MB - Last synced at: 28 days ago - Pushed at: 2 months ago - Stars: 1,166 - Forks: 265

f5devcentral/f5-agility-labs-waf
F5 Agility Labs for Web Application Firewall Use Cases
Language: Shell - Size: 216 MB - Last synced at: 29 days ago - Pushed at: 3 months ago - Stars: 20 - Forks: 36

fabriziosalmi/patterns
Automated OWASP CRS and Bad Bot Detection for Nginx, Apache, Traefik and HaProxy
Language: Python - Size: 1.35 MB - Last synced at: 28 days ago - Pushed at: 2 months ago - Stars: 264 - Forks: 5

O-X-L/haproxy-ja4
HAProxy (community) Lua Plugin for JA4 TLS Client-Fingerprinting
Language: Python - Size: 87.9 KB - Last synced at: about 1 month ago - Pushed at: 2 months ago - Stars: 11 - Forks: 2

fabriziosalmi/wafcontrol
Cloudflare WAF Settings Automation using GitHub Actions
Language: Python - Size: 107 KB - Last synced at: about 1 month ago - Pushed at: 5 months ago - Stars: 5 - Forks: 1

riotkit-org/wordpress-hardened
Secure and performant Wordpress installation on your Kubernetes cluster
Language: Shell - Size: 175 KB - Last synced at: about 1 month ago - Pushed at: 11 months ago - Stars: 16 - Forks: 1

danielecolon/Azure-Networking-103
Introduction to Azure Networking Services, including Virtual Networks, Application Gateways, Azure DNS, Web Application Firewall and Azure Front Door Services.
Size: 1.82 MB - Last synced at: 3 days ago - Pushed at: 4 months ago - Stars: 0 - Forks: 0

ADD-SP/ngx_waf
Handy, High performance, ModSecurity compatible Nginx firewall module & 方便、高性能、兼容 ModSecurity 的 Nginx 防火墙模块
Language: C - Size: 2.24 MB - Last synced at: 29 days ago - Pushed at: 4 months ago - Stars: 1,552 - Forks: 194

fabriziosalmi/limits
Automated rate limits implementation for web servers
Language: Python - Size: 89.8 KB - Last synced at: about 1 month ago - Pushed at: 4 months ago - Stars: 17 - Forks: 3

titansec/OpenWAF
Web security protection system based on openresty
Language: C - Size: 5.87 MB - Last synced at: about 1 month ago - Pushed at: about 4 years ago - Stars: 764 - Forks: 240

jackaduma/AI-WAF
AI driven Web Application Firewall
Language: Python - Size: 119 MB - Last synced at: 14 days ago - Pushed at: over 2 years ago - Stars: 26 - Forks: 3

lamcodeofpwnosec/IT_Infrastructure_Security
IT Infrastructure Security Project aimed at analyzing and protecting against various attacks on servers, applications, and websites, we would need to combine several technologies and implement multiple layers of security.
Language: Python - Size: 160 KB - Last synced at: 6 days ago - Pushed at: 7 months ago - Stars: 1 - Forks: 0

Janusec/janusec-admin
The Unified Web Administration Portal for Janusec Application Gateway (an application security solution which provides Web Application Firewall, unified web administration portal, private key protection, web routing and scalable load balancing).
Language: TypeScript - Size: 3.41 MB - Last synced at: 12 days ago - Pushed at: 2 months ago - Stars: 30 - Forks: 21

Trhead/saf
Using NATS Jetstream as queue manager to replace RabbitMQ, etc. consumer, nats, nats-jetstream, producer, producer-consumer
Language: Go - Size: 53.7 KB - Last synced at: 2 months ago - Pushed at: 2 months ago - Stars: 0 - Forks: 0

kamrullab/cloudflare-security-rules
This repository provides a complete Cloudflare WAF setup guide, including custom rules for bot protection, country blocking, and CAPTCHA verification. Learn how to configure firewall settings step by step to secure your website against threats.
Size: 4.88 KB - Last synced at: 2 months ago - Pushed at: 2 months ago - Stars: 0 - Forks: 0

ansibleguy/haproxy_waf_coraza
Ansible Role to provision the Coraza-WAF (OWASP) integrated with HAProxy
Language: Python - Size: 76.2 KB - Last synced at: 7 days ago - Pushed at: 3 months ago - Stars: 0 - Forks: 1

CloudIDEaaS/CloudIDEaaSWAF
CloudIDEaaS WAF is a Web Application Firewall product that supports the industry standard OWASP ruleset. It is A.I. and configuration-driven, cloud native, and extensible. It is community open-sourced, supports IP and GEO fencing, and can support reverse proxy cloud, on-premise, in process, or appliance.
Language: HTML - Size: 206 MB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 6 - Forks: 0

nemesida-waf/nemesida_waf_ce
Nemesida WAF Community Edition
Size: 75.2 KB - Last synced at: 19 days ago - Pushed at: 9 months ago - Stars: 33 - Forks: 2

prasanna7401/FrontDoor_Premium-WAF_Policy
Contains Terraform script to manage Azure FrontDoor (Standard/Premium) associated Web Application Firewall Policy Rules using Azure DevOps
Language: HCL - Size: 33.2 KB - Last synced at: about 2 months ago - Pushed at: 3 months ago - Stars: 0 - Forks: 0

O-X-L/haproxy-ja3n
HAProxy (community) Lua Plugin for JA3N TLS Client-Fingerprinting
Language: Lua - Size: 10.7 KB - Last synced at: 2 months ago - Pushed at: 8 months ago - Stars: 4 - Forks: 1

fabriziosalmi/caddy-adm
Browser Integrity Check and Scrapers Detection for Caddy
Language: Go - Size: 0 Bytes - Last synced at: 4 months ago - Pushed at: 4 months ago - Stars: 0 - Forks: 0

paulveillard/cybersecurity-ethical-hacking
An ongoing collection of awesome ethical hacking tools, software, libraries, learning tutorials, frameworks, academic and practical resources
Language: Python - Size: 44 MB - Last synced at: about 1 month ago - Pushed at: about 2 years ago - Stars: 30 - Forks: 3

tarcisio-marinho/A-Deep-Learning-Approach-to-Web-Application-Firewall
Avoid malicious payloads in your webapp with machine learning!
Language: Jupyter Notebook - Size: 176 MB - Last synced at: about 1 month ago - Pushed at: over 2 years ago - Stars: 19 - Forks: 6

riverside/php-waf
:guardsman: PHP Web Application Firewall
Language: PHP - Size: 78.1 KB - Last synced at: 15 days ago - Pushed at: 8 months ago - Stars: 30 - Forks: 12

wallarm/docker-wallarm-node
⚡️ Official docker image for Wallarm Node. API security platform agent.
Language: Shell - Size: 297 KB - Last synced at: 5 months ago - Pushed at: 5 months ago - Stars: 32 - Forks: 22

yaencn/safeline-lts-helmchart
长亭雷池WAF开源LTS长期支持版自制HelmChart
Language: Smarty - Size: 127 KB - Last synced at: 25 days ago - Pushed at: 5 months ago - Stars: 2 - Forks: 0

sudeshnapal12/Web-Application-Firewall
Designed and Implemented a Web Application Firewall as an Apache module that "sits" in-front of a web server. The WAF is designed to stop malicious requests from known attacks such as SQL Injection, XSS attacks and from unknown attacks by learning the legitimate traffic.
Language: C - Size: 2.01 MB - Last synced at: 6 months ago - Pushed at: over 8 years ago - Stars: 15 - Forks: 8

AvalZ/WAF-A-MoLE
A guided mutation-based fuzzer for ML-based Web Application Firewalls
Language: Python - Size: 4.44 MB - Last synced at: 6 months ago - Pushed at: about 1 year ago - Stars: 171 - Forks: 31

wafpassproject/wafpass
Analysing parameters with all payloads' bypass methods, aiming at benchmarking security solutions like WAF.
Language: Python - Size: 39.1 KB - Last synced at: 6 months ago - Pushed at: over 1 year ago - Stars: 219 - Forks: 74

nmmapper/dnsdumpster
A tool to perform DNS reconnaissance on target networks. Among the DNS information got from include subdomains, mx records, web application firewall detection and more fingerprinting and lookups
Language: Python - Size: 150 KB - Last synced at: about 1 year ago - Pushed at: about 2 years ago - Stars: 229 - Forks: 37

eliranmaman/ELRO-Security-Project
ELRO-Security is an advance & free WAF (Web Application Firewall), It is using to defend servers and especially websites around the internet. It is very easy to install and allow websites owner to add their own website via a web application interface which makes it accessible for almost everyone regardless of the level of codding.
Language: Python - Size: 7.67 MB - Last synced at: 15 days ago - Pushed at: over 4 years ago - Stars: 8 - Forks: 2

hybtli/akm-hackathon
Implementing Web Application Firewall (WAF) and integrating to website.
Language: TypeScript - Size: 323 KB - Last synced at: 11 months ago - Pushed at: 11 months ago - Stars: 0 - Forks: 0

cletqui/Imperva-WAF_direct-access
Check if your Imperva WAF protected websites are accessible directly!
Language: Shell - Size: 54.7 KB - Last synced at: about 1 month ago - Pushed at: 12 months ago - Stars: 0 - Forks: 0

MoimHossain/outbound-url-rewrite-iis-config
An example repo that shows how to rewrite IIS URL (outbound) to configure legacy asp.net web apps hosted on Azure App Service but safeguarded with a WAF (Front-door/Application Gateway)
Size: 69.3 KB - Last synced at: 3 months ago - Pushed at: about 4 years ago - Stars: 1 - Forks: 0

riotkit-org/waf-proxy 📦
Web Appliaction Firewall reverse-proxy using Coraza WAF + Caddy with ready-to-use rulesets
Language: Jinja - Size: 263 KB - Last synced at: about 1 month ago - Pushed at: almost 2 years ago - Stars: 7 - Forks: 1

webtester0/reverse-proxy-waf
Prototype of reverse proxy web application firewall with vulnerable web server
Language: JavaScript - Size: 120 KB - Last synced at: about 1 year ago - Pushed at: over 4 years ago - Stars: 3 - Forks: 1

philippnormann/malicious-payload-detection
🕵️♂️ ML project to identify malicious web payloads, aimed at boosting the effectiveness of WAFs and IDSs.
Language: Jupyter Notebook - Size: 3.91 MB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 1 - Forks: 0

cogsmith/webgate
📡 Automagical Proxy Server 📡
Language: JavaScript - Size: 605 KB - Last synced at: about 1 year ago - Pushed at: almost 4 years ago - Stars: 4 - Forks: 0

frasermolyneux-archive/poc-waf-policy-bicep
This repository contains a proof of concept for for managing an Azure WAF policy using Bicep.
Language: Bicep - Size: 27.3 KB - Last synced at: 3 months ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 1

kutluhanazafli/WebApplicationFirewall
The project aims to improve the security of web applications by using machine learning techniques for threat detection and prevention.
Language: Jupyter Notebook - Size: 11.3 MB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

kibernetikos/solidflare
🔐 Secure, Scalable, Rust-powered API Gateway for Cloudflare Workers. Enhance your API's security, performance and flexibility!
Language: Rust - Size: 12.7 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

nas-tabchiche/3aw
Simple Web Application Firewall, written in python, powered by Django
Language: Python - Size: 36.1 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

MoimHossain/azure-application-gateway
Provision Azure Application Gateway to protect an existing Azure Web site
Language: PowerShell - Size: 21.5 KB - Last synced at: 3 months ago - Pushed at: about 7 years ago - Stars: 2 - Forks: 0

numanozdemircom/webcop-firewall
WebCOP Firewall is advanced and PHP based web application firewall. Doesnt ask for root privileges.
Language: PHP - Size: 6.2 MB - Last synced at: over 1 year ago - Pushed at: about 6 years ago - Stars: 22 - Forks: 11

aurora1369/asteria
Handy Web Application Firewall
Language: Go - Size: 148 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 1 - Forks: 0

geekcell/terraform-aws-waf
Terraform module to provision an AWS Web Application Firewall.
Language: HCL - Size: 30.3 KB - Last synced at: 7 days ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 0

sporkmonger/ifproxy
A reverse proxy for golang that allows requests to be blocked/aborted before being sent upstream.
Language: Go - Size: 30.3 KB - Last synced at: 4 days ago - Pushed at: about 4 years ago - Stars: 2 - Forks: 2

N-R-technologies/WAF-WAF
A web application firewall capable of scanning local network vulnerabilities and protecting servers from various attacks.
Language: Python - Size: 12.8 MB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 6 - Forks: 1

carlosdg/NginxReverseProxyWithModsecurity
NGINX reverse proxy using ModSecurity WAF to protect a web application
Language: Dockerfile - Size: 2.78 MB - Last synced at: about 2 years ago - Pushed at: about 5 years ago - Stars: 6 - Forks: 1

vladan-stojnic/ML-based-WAF
Simple machine learning based web application firewall (WAF) created in python
Language: Jupyter Notebook - Size: 16.8 MB - Last synced at: about 2 years ago - Pushed at: almost 5 years ago - Stars: 27 - Forks: 10

orangemiaw/SimpleWAF
:octocat: SimpleWAF is a simple web application firewall writen using PHP that can send real time attacking report by some actor using Telegram Bot API.
Language: PHP - Size: 104 KB - Last synced at: about 2 years ago - Pushed at: over 5 years ago - Stars: 22 - Forks: 6

swaf-project/swaf-docker
A simple Web Application Firewall docker image.
Language: Shell - Size: 146 KB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 9 - Forks: 6

3nn10/CloudDog
CloudDog is a centralized EDR and WAF, it is able to identify and prevent web application attacks, ssh bruteforce and Suspicious shell commands.
Language: Python - Size: 107 KB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 6 - Forks: 2

danyahscript/SkinGlow
Skin Glow is a skin care online shop that provides users with the ability to view skin care products, register, log-in, edit profile, and purchase. Furthermore, provide the admins with main management options (add, delete, and view user's messages).
Language: CSS - Size: 3.45 MB - Last synced at: about 2 years ago - Pushed at: almost 3 years ago - Stars: 0 - Forks: 0

jiheon-dev/w-secure
Secure API Gateway bulit on Node.js, Web Application Firewall
Size: 1.95 KB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 1 - Forks: 0

turnerlabs/sigsci_site_manager
Signal Sciences Site Manager
Language: Python - Size: 154 KB - Last synced at: about 1 month ago - Pushed at: about 3 years ago - Stars: 11 - Forks: 8

reinforchu/NachtWal
Reinforced Mitigation Security Filter
Language: C# - Size: 27.3 KB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 17 - Forks: 2

aranemac/pamsel
parsing modsecurity logfiles
Language: C++ - Size: 245 KB - Last synced at: about 2 years ago - Pushed at: about 3 years ago - Stars: 0 - Forks: 0

nico-ralf-ii-fpuna/tfg
OCS-WAF: a Web Application Firewall based on anomaly detection using One-Class SVM classifier
Language: TeX - Size: 11.5 MB - Last synced at: about 2 years ago - Pushed at: almost 3 years ago - Stars: 3 - Forks: 0

lassalleloan/anomaly-detection
Anomaly Detection with Spark Machine Learning
Language: Scala - Size: 11.1 MB - Last synced at: about 2 years ago - Pushed at: almost 6 years ago - Stars: 2 - Forks: 0

RoyKimYYZ/Create-AzureAppGatewayAppService
PowerShell script creating Azure App Gateway, App Service Web App and Azure SQL DB
Language: PowerShell - Size: 133 KB - Last synced at: about 1 year ago - Pushed at: over 7 years ago - Stars: 2 - Forks: 1

tomelliff/aws-waf-cidr-converter
Convert CIDR ranges into the ranges allowed by AWS WAF IP Sets
Language: Python - Size: 14.6 KB - Last synced at: about 2 years ago - Pushed at: about 8 years ago - Stars: 2 - Forks: 2
