Jump to content

Suricata (software)

From Wikipedia, the free encyclopedia
Suricata
DeveloperOpen Information Security Foundation
Stable release
8.0.1 / 16 September 2025; 32 days ago (16 September 2025)[1]
Repository
Written inC, Rust
Operating systemFreeBSD, Linux, UNIX, Mac OS X, Microsoft Windows
Type
LicenseGNU General Public License[2]
Websitesuricata.io Edit this at Wikidata

Suricata is an open-source based intrusion detection system (IDS) and intrusion prevention system (IPS). It was developed by the Open Information Security Foundation (OISF). A beta version was released in December 2009, with the first standard release following in July 2010.[3][4][5]

Features

[edit]

Like other IDSes, Suricata provides threat detection capabilities. Like a firewall, Suricata provides traffic filtering and monitoring, but Suricata provides network administrators with the ability to write and enforce detection rules.[4]

Suricata is able to detect common attack vectors such as port scanning, denial-of-service, pass-the-hash, and brute-force attacks.[4]

Typically, a major update of Suricata is released every 3 months.[4]

Ruleset

[edit]

Suricata uses a ruleset to perform detection and threat analysis.[4]

See also

[edit]

References

[edit]
  1. ^ "Releases - OISF/suricata" – via GitHub.
  2. ^ "Suricata license".
  3. ^ "New Open Source Intrusion Detector Suricata Released". Slashdot. 2009-12-31. Retrieved 2011-11-08.
  4. ^ a b c d e Rice-Jones, Joe (March 26, 2025). "5 reasons to use Suricata or Snort for your home lab firewall". XDA Developers.
  5. ^ "Suricata Downloads". Open Security Information Foundation. Retrieved 2011-11-08.
[edit]