An open API service providing repository metadata for many open source software ecosystems.

GitHub topics: web-application-firewall

aaPanel/aaWAF

堡塔云WAF,宝塔免费(free)的私有云网站应用防火墙(firewall),基于docker/nginx/lua开发

Language: Go - Size: 15.4 MB - Last synced at: about 2 hours ago - Pushed at: about 14 hours ago - Stars: 435 - Forks: 88

HUAHUAI23/RuiQi

A modern web application firewall (WAF) management system built on top of HAProxy and OWASP Coraza WAF with the Coraza SPOA integration. This system provides a comprehensive backend API for managing HAProxy configurations, Coraza WAF rules, and traffic inspection.

Language: TypeScript - Size: 91.3 MB - Last synced at: about 9 hours ago - Pushed at: about 10 hours ago - Stars: 13 - Forks: 4

0xInfection/Awesome-WAF

🔥 Web-application firewalls (WAFs) from security standpoint.

Language: Python - Size: 29.1 MB - Last synced at: about 17 hours ago - Pushed at: 6 months ago - Stars: 6,637 - Forks: 1,094

EnableSecurity/wafw00f

WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.

Language: Python - Size: 753 KB - Last synced at: 2 days ago - Pushed at: 4 months ago - Stars: 5,639 - Forks: 967

corazawaf/coraza

OWASP Coraza WAF is a golang modsecurity compatible web application firewall library

Language: Go - Size: 29.5 MB - Last synced at: 3 days ago - Pushed at: 5 days ago - Stars: 2,636 - Forks: 257

chaitin/blazehttp

BlazeHTTP 是一款简单易用的 WAF 防护效果测试工具。BlazeHTTP stands as a user-friendly WAF protection efficacy evaluation tool.

Language: Go - Size: 37.4 MB - Last synced at: 3 days ago - Pushed at: 10 months ago - Stars: 811 - Forks: 93

chaitin/SafeLine

SafeLine is a self-hosted WAF(Web Application Firewall) / reverse proxy to protect your web apps from attacks and exploits.

Language: Go - Size: 76.4 MB - Last synced at: 4 days ago - Pushed at: 17 days ago - Stars: 16,274 - Forks: 981

leohearts/awd-watchbird

A powerful PHP WAF for AWD

Language: PHP - Size: 384 KB - Last synced at: 1 day ago - Pushed at: 10 months ago - Stars: 724 - Forks: 93

tempesta-tech/tempesta

All-in-one solution for high performance web content delivery and advanced protection against DDoS and web attacks

Language: C - Size: 21.1 MB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 648 - Forks: 106

casbin/caswaf

HTTP & OAuth Gateway and Web Application Firewall (WAF) based on ModSecurity, online demo: https://door.caswaf.com

Language: Go - Size: 1020 KB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 327 - Forks: 27

bunkerity/bunkerweb

🛡️ Open-source and next-generation Web Application Firewall (WAF)

Language: Python - Size: 563 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 7,921 - Forks: 455

timokoessler/easy-waf-data

This repository provides ip data for the Web Application Firewall EasyWAF.

Language: TypeScript - Size: 176 KB - Last synced at: 2 days ago - Pushed at: 7 days ago - Stars: 3 - Forks: 0

timokoessler/easy-waf

An easy-to-use Web Application Firewall (WAF) for Node.js. Can be used with Express, Fastify, NextJS, NuxtJS ... or plain Node.js http.

Language: TypeScript - Size: 749 KB - Last synced at: 2 days ago - Pushed at: 4 months ago - Stars: 46 - Forks: 4

corazawaf/coraza-spoa

A wrapper for integrating the OWASP Coraza WAF with HAProxy's SPOE filters.

Language: Go - Size: 269 KB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 108 - Forks: 23

teler-sh/teler-proxy

🔐 teler Proxy enabling seamless integration with teler WAF 🛡️ to protect locally running web service against a web-based attacks. 🥷

Language: Go - Size: 3.22 MB - Last synced at: about 2 hours ago - Pushed at: 3 months ago - Stars: 50 - Forks: 9

fabriziosalmi/caddy-waf

Caddy WAF (Regex Rules, IP and DNS filtering, Rate Limiting, GeoIP, Tor, Anomaly Detection)

Language: Go - Size: 8.21 MB - Last synced at: 11 days ago - Pushed at: 11 days ago - Stars: 497 - Forks: 16

akshanthsaik/AI-Driven-Web-Application-Firewall-WAF

AI-powered Web Application Firewall utilizing a Random Forest model to block SQL injection, XSS, and other web attacks. Features real-time proxy integration, an interactive dashboard, and explainable machine learning.

Language: HTML - Size: 25 MB - Last synced at: 13 days ago - Pushed at: 14 days ago - Stars: 1 - Forks: 0

yaencn/safeline-helmchart

长亭雷池WAF开源版-预览版自制HelmChart

Language: Smarty - Size: 734 KB - Last synced at: 16 days ago - Pushed at: 16 days ago - Stars: 9 - Forks: 0

Safe3/uuWAF

An industry-leading free, high-performance, AI and semantic technology Web Application Firewall and API Security Gateway (WAAP) - UUSEC WAF.

Language: C - Size: 2.6 GB - Last synced at: 16 days ago - Pushed at: 16 days ago - Stars: 1,083 - Forks: 118

Smalls1652/waf-rules

My web application firewall rules for ModSecurity. (Mirror)

Size: 19.5 KB - Last synced at: about 21 hours ago - Pushed at: 17 days ago - Stars: 0 - Forks: 0

wallarm/api-firewall

Fast and light-weight API proxy firewall for request and response validation by OpenAPI specs.

Language: Go - Size: 1.58 MB - Last synced at: 18 days ago - Pushed at: 18 days ago - Stars: 609 - Forks: 59

openappsec/openappsec

open-appsec is a machine learning security engine that preemptively and automatically prevents threats against Web Application & APIs. This repo include the main code and logic.

Language: C++ - Size: 94.5 MB - Last synced at: 23 days ago - Pushed at: 24 days ago - Stars: 1,175 - Forks: 87

php-waf/php-waf

A lightweight and configurable PHP WAF extension written in C to block malicious requests.

Size: 15.6 KB - Last synced at: 28 days ago - Pushed at: 30 days ago - Stars: 0 - Forks: 0

Ekultek/WhatWaf

Detect and bypass web application firewalls and protection systems

Language: Python - Size: 401 KB - Last synced at: 30 days ago - Pushed at: 9 months ago - Stars: 2,751 - Forks: 454

wallarm/gotestwaf

An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

Language: Go - Size: 11.7 MB - Last synced at: about 1 month ago - Pushed at: 3 months ago - Stars: 1,645 - Forks: 228

Janusec/janusec

JANUSEC Application Gateway provides secure access, including reverse proxy, K8S Ingress Controller, Automatic ACME Certificate, WAF, 5-Second Shield, CC Defense, OAuth2 Authentication, Global Server Load Balance, and Cookie Compliance etc. JANUSEC应用网关,提供安全的接入,包括反向代理、K8S Ingress Controller、自动化ACME证书、WAF、5秒盾、CC防御、OAuth2身份认证、GSLB负载均衡与Cookie合规等。

Language: Go - Size: 36.9 MB - Last synced at: 28 days ago - Pushed at: 2 months ago - Stars: 1,166 - Forks: 265

f5devcentral/f5-agility-labs-waf

F5 Agility Labs for Web Application Firewall Use Cases

Language: Shell - Size: 216 MB - Last synced at: 29 days ago - Pushed at: 3 months ago - Stars: 20 - Forks: 36

fabriziosalmi/patterns

Automated OWASP CRS and Bad Bot Detection for Nginx, Apache, Traefik and HaProxy

Language: Python - Size: 1.35 MB - Last synced at: 28 days ago - Pushed at: 2 months ago - Stars: 264 - Forks: 5

O-X-L/haproxy-ja4

HAProxy (community) Lua Plugin for JA4 TLS Client-Fingerprinting

Language: Python - Size: 87.9 KB - Last synced at: about 1 month ago - Pushed at: 2 months ago - Stars: 11 - Forks: 2

fabriziosalmi/wafcontrol

Cloudflare WAF Settings Automation using GitHub Actions

Language: Python - Size: 107 KB - Last synced at: about 1 month ago - Pushed at: 5 months ago - Stars: 5 - Forks: 1

riotkit-org/wordpress-hardened

Secure and performant Wordpress installation on your Kubernetes cluster

Language: Shell - Size: 175 KB - Last synced at: about 1 month ago - Pushed at: 11 months ago - Stars: 16 - Forks: 1

danielecolon/Azure-Networking-103

Introduction to Azure Networking Services, including Virtual Networks, Application Gateways, Azure DNS, Web Application Firewall and Azure Front Door Services.

Size: 1.82 MB - Last synced at: 3 days ago - Pushed at: 4 months ago - Stars: 0 - Forks: 0

ADD-SP/ngx_waf

Handy, High performance, ModSecurity compatible Nginx firewall module & 方便、高性能、兼容 ModSecurity 的 Nginx 防火墙模块

Language: C - Size: 2.24 MB - Last synced at: 29 days ago - Pushed at: 4 months ago - Stars: 1,552 - Forks: 194

fabriziosalmi/limits

Automated rate limits implementation for web servers

Language: Python - Size: 89.8 KB - Last synced at: about 1 month ago - Pushed at: 4 months ago - Stars: 17 - Forks: 3

titansec/OpenWAF

Web security protection system based on openresty

Language: C - Size: 5.87 MB - Last synced at: about 1 month ago - Pushed at: about 4 years ago - Stars: 764 - Forks: 240

jackaduma/AI-WAF

AI driven Web Application Firewall

Language: Python - Size: 119 MB - Last synced at: 14 days ago - Pushed at: over 2 years ago - Stars: 26 - Forks: 3

lamcodeofpwnosec/IT_Infrastructure_Security

IT Infrastructure Security Project aimed at analyzing and protecting against various attacks on servers, applications, and websites, we would need to combine several technologies and implement multiple layers of security.

Language: Python - Size: 160 KB - Last synced at: 6 days ago - Pushed at: 7 months ago - Stars: 1 - Forks: 0

Janusec/janusec-admin

The Unified Web Administration Portal for Janusec Application Gateway (an application security solution which provides Web Application Firewall, unified web administration portal, private key protection, web routing and scalable load balancing).

Language: TypeScript - Size: 3.41 MB - Last synced at: 12 days ago - Pushed at: 2 months ago - Stars: 30 - Forks: 21

Trhead/saf

Using NATS Jetstream as queue manager to replace RabbitMQ, etc. consumer, nats, nats-jetstream, producer, producer-consumer

Language: Go - Size: 53.7 KB - Last synced at: 2 months ago - Pushed at: 2 months ago - Stars: 0 - Forks: 0

kamrullab/cloudflare-security-rules

This repository provides a complete Cloudflare WAF setup guide, including custom rules for bot protection, country blocking, and CAPTCHA verification. Learn how to configure firewall settings step by step to secure your website against threats.

Size: 4.88 KB - Last synced at: 2 months ago - Pushed at: 2 months ago - Stars: 0 - Forks: 0

ansibleguy/haproxy_waf_coraza

Ansible Role to provision the Coraza-WAF (OWASP) integrated with HAProxy

Language: Python - Size: 76.2 KB - Last synced at: 7 days ago - Pushed at: 3 months ago - Stars: 0 - Forks: 1

CloudIDEaaS/CloudIDEaaSWAF

CloudIDEaaS WAF is a Web Application Firewall product that supports the industry standard OWASP ruleset. It is A.I. and configuration-driven, cloud native, and extensible. It is community open-sourced, supports IP and GEO fencing, and can support reverse proxy cloud, on-premise, in process, or appliance.

Language: HTML - Size: 206 MB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 6 - Forks: 0

nemesida-waf/nemesida_waf_ce

Nemesida WAF Community Edition

Size: 75.2 KB - Last synced at: 19 days ago - Pushed at: 9 months ago - Stars: 33 - Forks: 2

prasanna7401/FrontDoor_Premium-WAF_Policy

Contains Terraform script to manage Azure FrontDoor (Standard/Premium) associated Web Application Firewall Policy Rules using Azure DevOps

Language: HCL - Size: 33.2 KB - Last synced at: about 2 months ago - Pushed at: 3 months ago - Stars: 0 - Forks: 0

O-X-L/haproxy-ja3n

HAProxy (community) Lua Plugin for JA3N TLS Client-Fingerprinting

Language: Lua - Size: 10.7 KB - Last synced at: 2 months ago - Pushed at: 8 months ago - Stars: 4 - Forks: 1

fabriziosalmi/caddy-adm

Browser Integrity Check and Scrapers Detection for Caddy

Language: Go - Size: 0 Bytes - Last synced at: 4 months ago - Pushed at: 4 months ago - Stars: 0 - Forks: 0

paulveillard/cybersecurity-ethical-hacking

An ongoing collection of awesome ethical hacking tools, software, libraries, learning tutorials, frameworks, academic and practical resources

Language: Python - Size: 44 MB - Last synced at: about 1 month ago - Pushed at: about 2 years ago - Stars: 30 - Forks: 3

tarcisio-marinho/A-Deep-Learning-Approach-to-Web-Application-Firewall

Avoid malicious payloads in your webapp with machine learning!

Language: Jupyter Notebook - Size: 176 MB - Last synced at: about 1 month ago - Pushed at: over 2 years ago - Stars: 19 - Forks: 6

riverside/php-waf

:guardsman: PHP Web Application Firewall

Language: PHP - Size: 78.1 KB - Last synced at: 15 days ago - Pushed at: 8 months ago - Stars: 30 - Forks: 12

wallarm/docker-wallarm-node

⚡️ Official docker image for Wallarm Node. API security platform agent.

Language: Shell - Size: 297 KB - Last synced at: 5 months ago - Pushed at: 5 months ago - Stars: 32 - Forks: 22

yaencn/safeline-lts-helmchart

长亭雷池WAF开源LTS长期支持版自制HelmChart

Language: Smarty - Size: 127 KB - Last synced at: 25 days ago - Pushed at: 5 months ago - Stars: 2 - Forks: 0

sudeshnapal12/Web-Application-Firewall

Designed and Implemented a Web Application Firewall as an Apache module that "sits" in-front of a web server. The WAF is designed to stop malicious requests from known attacks such as SQL Injection, XSS attacks and from unknown attacks by learning the legitimate traffic.

Language: C - Size: 2.01 MB - Last synced at: 6 months ago - Pushed at: over 8 years ago - Stars: 15 - Forks: 8

AvalZ/WAF-A-MoLE

A guided mutation-based fuzzer for ML-based Web Application Firewalls

Language: Python - Size: 4.44 MB - Last synced at: 6 months ago - Pushed at: about 1 year ago - Stars: 171 - Forks: 31

wafpassproject/wafpass

Analysing parameters with all payloads' bypass methods, aiming at benchmarking security solutions like WAF.

Language: Python - Size: 39.1 KB - Last synced at: 6 months ago - Pushed at: over 1 year ago - Stars: 219 - Forks: 74

nmmapper/dnsdumpster

A tool to perform DNS reconnaissance on target networks. Among the DNS information got from include subdomains, mx records, web application firewall detection and more fingerprinting and lookups

Language: Python - Size: 150 KB - Last synced at: about 1 year ago - Pushed at: about 2 years ago - Stars: 229 - Forks: 37

eliranmaman/ELRO-Security-Project

ELRO-Security is an advance & free WAF (Web Application Firewall), It is using to defend servers and especially websites around the internet. It is very easy to install and allow websites owner to add their own website via a web application interface which makes it accessible for almost everyone regardless of the level of codding.

Language: Python - Size: 7.67 MB - Last synced at: 15 days ago - Pushed at: over 4 years ago - Stars: 8 - Forks: 2

hybtli/akm-hackathon

Implementing Web Application Firewall (WAF) and integrating to website.

Language: TypeScript - Size: 323 KB - Last synced at: 11 months ago - Pushed at: 11 months ago - Stars: 0 - Forks: 0

cletqui/Imperva-WAF_direct-access

Check if your Imperva WAF protected websites are accessible directly!

Language: Shell - Size: 54.7 KB - Last synced at: about 1 month ago - Pushed at: 12 months ago - Stars: 0 - Forks: 0

MoimHossain/outbound-url-rewrite-iis-config

An example repo that shows how to rewrite IIS URL (outbound) to configure legacy asp.net web apps hosted on Azure App Service but safeguarded with a WAF (Front-door/Application Gateway)

Size: 69.3 KB - Last synced at: 3 months ago - Pushed at: about 4 years ago - Stars: 1 - Forks: 0

riotkit-org/waf-proxy 📦

Web Appliaction Firewall reverse-proxy using Coraza WAF + Caddy with ready-to-use rulesets

Language: Jinja - Size: 263 KB - Last synced at: about 1 month ago - Pushed at: almost 2 years ago - Stars: 7 - Forks: 1

webtester0/reverse-proxy-waf

Prototype of reverse proxy web application firewall with vulnerable web server

Language: JavaScript - Size: 120 KB - Last synced at: about 1 year ago - Pushed at: over 4 years ago - Stars: 3 - Forks: 1

philippnormann/malicious-payload-detection

🕵️‍♂️ ML project to identify malicious web payloads, aimed at boosting the effectiveness of WAFs and IDSs.

Language: Jupyter Notebook - Size: 3.91 MB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 1 - Forks: 0

cogsmith/webgate

📡 Automagical Proxy Server 📡

Language: JavaScript - Size: 605 KB - Last synced at: about 1 year ago - Pushed at: almost 4 years ago - Stars: 4 - Forks: 0

frasermolyneux-archive/poc-waf-policy-bicep

This repository contains a proof of concept for for managing an Azure WAF policy using Bicep.

Language: Bicep - Size: 27.3 KB - Last synced at: 3 months ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 1

kutluhanazafli/WebApplicationFirewall

The project aims to improve the security of web applications by using machine learning techniques for threat detection and prevention.

Language: Jupyter Notebook - Size: 11.3 MB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

kibernetikos/solidflare

🔐 Secure, Scalable, Rust-powered API Gateway for Cloudflare Workers. Enhance your API's security, performance and flexibility!

Language: Rust - Size: 12.7 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

nas-tabchiche/3aw

Simple Web Application Firewall, written in python, powered by Django

Language: Python - Size: 36.1 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

MoimHossain/azure-application-gateway

Provision Azure Application Gateway to protect an existing Azure Web site

Language: PowerShell - Size: 21.5 KB - Last synced at: 3 months ago - Pushed at: about 7 years ago - Stars: 2 - Forks: 0

numanozdemircom/webcop-firewall

WebCOP Firewall is advanced and PHP based web application firewall. Doesnt ask for root privileges.

Language: PHP - Size: 6.2 MB - Last synced at: over 1 year ago - Pushed at: about 6 years ago - Stars: 22 - Forks: 11

aurora1369/asteria

Handy Web Application Firewall

Language: Go - Size: 148 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 1 - Forks: 0

geekcell/terraform-aws-waf

Terraform module to provision an AWS Web Application Firewall.

Language: HCL - Size: 30.3 KB - Last synced at: 7 days ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 0

sporkmonger/ifproxy

A reverse proxy for golang that allows requests to be blocked/aborted before being sent upstream.

Language: Go - Size: 30.3 KB - Last synced at: 4 days ago - Pushed at: about 4 years ago - Stars: 2 - Forks: 2

N-R-technologies/WAF-WAF

A web application firewall capable of scanning local network vulnerabilities and protecting servers from various attacks.

Language: Python - Size: 12.8 MB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 6 - Forks: 1

carlosdg/NginxReverseProxyWithModsecurity

NGINX reverse proxy using ModSecurity WAF to protect a web application

Language: Dockerfile - Size: 2.78 MB - Last synced at: about 2 years ago - Pushed at: about 5 years ago - Stars: 6 - Forks: 1

vladan-stojnic/ML-based-WAF

Simple machine learning based web application firewall (WAF) created in python

Language: Jupyter Notebook - Size: 16.8 MB - Last synced at: about 2 years ago - Pushed at: almost 5 years ago - Stars: 27 - Forks: 10

orangemiaw/SimpleWAF

:octocat: SimpleWAF is a simple web application firewall writen using PHP that can send real time attacking report by some actor using Telegram Bot API.

Language: PHP - Size: 104 KB - Last synced at: about 2 years ago - Pushed at: over 5 years ago - Stars: 22 - Forks: 6

swaf-project/swaf-docker

A simple Web Application Firewall docker image.

Language: Shell - Size: 146 KB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 9 - Forks: 6

3nn10/CloudDog

CloudDog is a centralized EDR and WAF, it is able to identify and prevent web application attacks, ssh bruteforce and Suspicious shell commands.

Language: Python - Size: 107 KB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 6 - Forks: 2

danyahscript/SkinGlow

Skin Glow is a skin care online shop that provides users with the ability to view skin care products, register, log-in, edit profile, and purchase. Furthermore, provide the admins with main management options (add, delete, and view user's messages).

Language: CSS - Size: 3.45 MB - Last synced at: about 2 years ago - Pushed at: almost 3 years ago - Stars: 0 - Forks: 0

jiheon-dev/w-secure

Secure API Gateway bulit on Node.js, Web Application Firewall

Size: 1.95 KB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 1 - Forks: 0

turnerlabs/sigsci_site_manager

Signal Sciences Site Manager

Language: Python - Size: 154 KB - Last synced at: about 1 month ago - Pushed at: about 3 years ago - Stars: 11 - Forks: 8

reinforchu/NachtWal

Reinforced Mitigation Security Filter

Language: C# - Size: 27.3 KB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 17 - Forks: 2

aranemac/pamsel

parsing modsecurity logfiles

Language: C++ - Size: 245 KB - Last synced at: about 2 years ago - Pushed at: about 3 years ago - Stars: 0 - Forks: 0

nico-ralf-ii-fpuna/tfg

OCS-WAF: a Web Application Firewall based on anomaly detection using One-Class SVM classifier

Language: TeX - Size: 11.5 MB - Last synced at: about 2 years ago - Pushed at: almost 3 years ago - Stars: 3 - Forks: 0

lassalleloan/anomaly-detection

Anomaly Detection with Spark Machine Learning

Language: Scala - Size: 11.1 MB - Last synced at: about 2 years ago - Pushed at: almost 6 years ago - Stars: 2 - Forks: 0

RoyKimYYZ/Create-AzureAppGatewayAppService

PowerShell script creating Azure App Gateway, App Service Web App and Azure SQL DB

Language: PowerShell - Size: 133 KB - Last synced at: about 1 year ago - Pushed at: over 7 years ago - Stars: 2 - Forks: 1

tomelliff/aws-waf-cidr-converter

Convert CIDR ranges into the ranges allowed by AWS WAF IP Sets

Language: Python - Size: 14.6 KB - Last synced at: about 2 years ago - Pushed at: about 8 years ago - Stars: 2 - Forks: 2