Industry-leading free, high-performance, AI and semantic technology Web Application Firewall and API Security Gateway (WAAP) - UUSEC WAF.
-
Updated
May 19, 2026 - Shell
Industry-leading free, high-performance, AI and semantic technology Web Application Firewall and API Security Gateway (WAAP) - UUSEC WAF.
Script to install your own Ghost blog, with Nginx and ModSecurity/Naxsi web application firewall. Supports multiple blogs.
Development repository for nginx-more package
Logstash configuration filter set framework to parse modsecurity audit logs
A full Mod_Security guide to use local software like clam-av, chkrootkit, fail2ban, rkhunter for Nginx & Apache
Scripts written by Steve Stonebraker for Administration
Secure nginx proxy with letsencrypt, modsecurity, fail2ban, crowdsec, clamav and serval other security components based on alpine docker
A simple Web Application Firewall docker image.
docker modsecurity reverse proxy WAF based on nginx
Detection, mitigation, and reverse-engineering tooling for CVE-2026-41940 (SessionScribe): the cPanel/WHM unauthenticated session-forgery vulnerability disclosed 2026-04-28. Defense-in-depth active mitigation shim, ModSec rule pack, remote probe, on-host IOC scanner, and per-tier RE snapshot collector. GPL v2.
Deploy DVWA Webserver + ModSecurity + Scanner for researching rules. Auto deployment scripts are supported
Angie web server with ModSecurity WAF, Fail2Ban, OWASP CRS 4.x, GeoIP enrichment
🐋 hardened ubuntu server dokku | This repository contains scripts, configuration templates, and documentation used for the initial setup of a hardened Ubuntu 22.04 LTS server using the Dokku service to host websites in a secure production environment.
1 Minute WAF is a Web Application Firewall designed to provide robust security for web servers, Protecting against common web attacks: such as SQL injection, XSS, and more. It's an easy-to-install solution that focuses on delivering protection in just a minute!
A Bash script that fetches and parses JSON-based IP range data for trusted search engine bots (Googlebot, Bingbot, and others), ideal for use with ModSecurity and other web application firewalls and web servers.
NGINX set up with ModSecurity enabled and configured with Open Web Application Security Project Core Rule Set (OWASP CRS). All running on docker.
Development repository for nginx-builder package
Proteção Anti-DDoS
A dockized Nginx, Php, MySQL, PhpMyAdmin, MySQL, and MailCow project.
Add a description, image, and links to the modsecurity topic page so that developers can more easily learn about it.
To associate your repository with the modsecurity topic, visit your repo's landing page and select "manage topics."