Home/Detection rules/Suricata / ET-open
Tool
Network IDS

Suricata / ET-open

48,683 rules · network intrusion-detection signatures
Network intrusion-detection signatures from open rulesets (ET Open, Snort Community, abuse.ch). These match malicious traffic patterns on the wire. A rule name links to its upstream reference where the ruleset publishes one; rules without a public reference show as plain text.
Using these IDS signatures
Deploy. Load them into a Suricata or Snort sensor and reload the ruleset; the sensor inspects traffic inline or from a tap or SPAN port and alerts (or drops) the moment a packet matches.
Adapt. Set the action per rule (alert vs drop), make sure the sensor actually sees the traffic in question - TLS payloads need decryption first - and silence noisy signatures that do not fit your network.
Scope. These catch malicious patterns on the wire: C2 beacons, exploit attempts, known-bad hosts. Pair them with endpoint and log detection, since encrypted or host-local activity never crosses the sensor.

Rules

50 shown of 48,683
sid 2004325 format suricata T1190 ↗
sid 2004327 format suricata T1190 ↗
sid 2004328 format suricata T1190 ↗
sid 2004329 format suricata T1190 ↗
sid 2004330 format suricata T1190 ↗
sid 2004331 format suricata T1190 ↗
sid 2004333 format suricata T1190 ↗
sid 2004334 format suricata T1190 ↗
sid 2004335 format suricata T1190 ↗
sid 2004336 format suricata T1190 ↗
sid 2004337 format suricata T1190 ↗
sid 2004338 format suricata T1190 ↗
sid 2004339 format suricata T1190 ↗
sid 2004340 format suricata T1190 ↗
sid 2004341 format suricata T1190 ↗
sid 2004342 format suricata T1190 ↗
sid 2004343 format suricata T1190 ↗
sid 2004345 format suricata T1190 ↗
sid 2004346 format suricata T1190 ↗
sid 2004347 format suricata T1190 ↗
sid 2004348 format suricata T1190 ↗
sid 2004353 format suricata T1190 ↗
sid 2004355 format suricata T1190 ↗
sid 2004357 format suricata T1190 ↗
sid 2004358 format suricata T1190 ↗
sid 2004359 format suricata T1190 ↗
sid 2004360 format suricata T1190 ↗
sid 2004361 format suricata T1190 ↗
sid 2004363 format suricata T1190 ↗
sid 2004364 format suricata T1190 ↗
sid 2004365 format suricata T1190 ↗
sid 2004366 format suricata T1190 ↗
sid 2004367 format suricata T1190 ↗
sid 2004369 format suricata T1190 ↗
sid 2004370 format suricata T1190 ↗
sid 2004371 format suricata T1190 ↗
sid 2004372 format suricata T1190 ↗
Showing 651-700 of 48,683