maltrail
maltrail copied to clipboard
Malicious traffic detection system
If you put the country flag in a new column, you could additionally sort attacks by country. 
Hi, I'm using the maltrail plugin on my OpnSense appliance. Eveything is working lika a charm. But after a few tests I saw that my local computer ip was also...
G'Day, Greetings and best wishes. cat: /var/log/maltrail/22-06-14.log; No such file or directory. Please guide me to resolve. Thanks
Hello! In ```maltrail.conf``` to add support for ```SYSLOG_SERVER``` and ```LOGSTASH_SERVER``` options in ```[Server]``` section to make it possible to send messages to remote syslog/SIEM about successful and failed log-ins: ```...
Would be good if there was some page that has threats known to be picked up by maltrails sensors i could browse to to make sure its working as i've...
Hello In current state we have just result of analysis, without and details/summary for: a) what file was analysed, b) size of file was analysed, c) time, that was taken...
Hello! ```python-3.6-pylint``` for: ```/sensor.py```: ```W: 18, 0: Uses of a deprecated module 'optparse' (deprecated-module)``` ```/server.py```:```W: 14, 0: Uses of a deprecated module 'optparse' (deprecated-module)``` Refs: [1] https://stackoverflow.com/questions/3217673/why-use-argparse-rather-than-optparse [2] https://peps.python.org/pep-0389/ [3]...
It could be good if you could export all the attacker IPs on a single file so it's possible to share and use it on others security engine/products
Hi i tried commention the SYSLOG in maltrail conf and allow the port both on the maltrail server going to the syslog server(graylog) tried both CEF UDP and SYSLOG UDP...