Home/Detection rules/Suricata / ET-open
Tool
Network IDS

Suricata / ET-open

48,683 rules · network intrusion-detection signatures
Network intrusion-detection signatures from open rulesets (ET Open, Snort Community, abuse.ch). These match malicious traffic patterns on the wire. A rule name links to its upstream reference where the ruleset publishes one; rules without a public reference show as plain text.
Using these IDS signatures
Deploy. Load them into a Suricata or Snort sensor and reload the ruleset; the sensor inspects traffic inline or from a tap or SPAN port and alerts (or drops) the moment a packet matches.
Adapt. Set the action per rule (alert vs drop), make sure the sensor actually sees the traffic in question - TLS payloads need decryption first - and silence noisy signatures that do not fit your network.
Scope. These catch malicious patterns on the wire: C2 beacons, exploit attempts, known-bad hosts. Pair them with endpoint and log detection, since encrypted or host-local activity never crosses the sensor.

Rules

50 shown of 48,683
sid 2005348 format suricata T1190 ↗
sid 2005349 format suricata T1190 ↗
sid 2005350 format suricata T1190 ↗
sid 2005351 format suricata T1190 ↗
sid 2005352 format suricata T1190 ↗
sid 2005353 format suricata T1190 ↗
sid 2005378 format suricata T1190 ↗
sid 2005379 format suricata T1190 ↗
sid 2005380 format suricata T1190 ↗
sid 2005381 format suricata T1190 ↗
sid 2005382 format suricata T1190 ↗
sid 2005383 format suricata T1190 ↗
sid 2005384 format suricata T1190 ↗
sid 2005386 format suricata T1190 ↗
sid 2005387 format suricata T1190 ↗
sid 2005388 format suricata T1190 ↗
sid 2005389 format suricata T1190 ↗
sid 2005390 format suricata T1190 ↗
sid 2005391 format suricata T1190 ↗
sid 2005392 format suricata T1190 ↗
sid 2005394 format suricata T1190 ↗
sid 2005395 format suricata T1190 ↗
sid 2005396 format suricata T1190 ↗
sid 2005397 format suricata T1190 ↗
sid 2005398 format suricata T1190 ↗
sid 2005399 format suricata T1190 ↗
sid 2005400 format suricata T1190 ↗
sid 2005401 format suricata T1190 ↗
sid 2005402 format suricata T1190 ↗
sid 2005403 format suricata T1190 ↗
sid 2005404 format suricata T1190 ↗
sid 2005405 format suricata T1190 ↗
sid 2005406 format suricata T1190 ↗
Showing 1501-1550 of 48,683