crowdsec

crowdsec

CrowdSec is a community-driven security engine. It detects attack patterns through log analysis and shares threat intelligence across the community for real-time threat defense.

  • Log analysis detecting attack patterns from Nginx, Apache, SSH, and WordPress logs
  • Community threat database with attacker IP data shared by CrowdSec users worldwide
  • Bouncers for automatic blocking via Nginx, iptables, and Cloudflare integration
  • Scenarios with flexible YAML-based attack detection pattern definition
  • Dashboard for visualizing alerts, decisions, and traffic patterns
  • Lightweight agent built in Go with low resource consumption

Built in Go, CrowdSec serves as a modern fail2ban alternative that defends against attack patterns undetectable by individual servers through community-based threat intelligence sharing.

Stars
12,988
Forks
588
Language
Go
License
MIT
attacks-preventiondetectionidsipslinuxprotectionsecuritywaf

Related Tools