Protect your web apps from common attacks with open-source rules for web application firewalls. Learn, download, and contribute to the CRS project.
Safeguard your web apps from online threats
The CRS Project offers a robust set of open-source rules designed to detect and block web-based attacks. It's built for use with ModSecurity or compatible web application firewalls, giving you an extra layer of protection against threats like those listed in the OWASP Top Ten. Whether you're a developer, security professional, or just someone managing a website, you can find guides on installing, configuring, and deploying these rules.
You'll also discover thorough documentation, news updates, and ways to get involved with the community, whether that's contributing new rules or learning from the project's blog and videos. If you're looking to boost your web app's security with tried-and-tested detection rules, the CRS Project is a valuable resource that's both accessible and community-driven.
Discover websites similar to Coreruleset.org based on shared categories, topics, and features.
Snort offers open-source software for detecting and preventing network threats, helping you safeguard your systems on Linux and Windows for free.
Objective-See offers free, open-source security tools for Mac users to detect and block malware, monitor system activity, and protect privacy.
The Honeynet Project is a global nonprofit focused on cybersecurity research, sharing open-source security tools and knowledge to help defend against online threats.
Helps you identify, prevent, and report malicious software and websites to keep your devices and browsing safe from online threats.
Spybot protects your devices from malware, tracks unwanted software, and helps keep your digital identity private with advanced security tools.
Parrot Security offers a Linux-based operating system with 600+ tools for cybersecurity, digital forensics, and privacy protection.
Find detailed notes on software vulnerabilities, including technical info, remediation steps, and affected vendors, maintained by the CERT Coordination Center.
Wireshark lets you capture and analyze network traffic to troubleshoot issues, learn about protocols, and improve network security. Free downloads available.
Submit your website to the HSTS preload list to ensure browsers always use HTTPS for your domain and boost your site's security and compliance.
Learn about weak Diffie-Hellman key exchange and the Logjam attack, plus get practical guides to strengthen TLS security on your servers and websites.
CREST connects you with trusted cyber security providers, accreditations, and training to help strengthen your organization's digital defenses.
Independent antivirus and security software tests and reviews in German. Compare protection for Windows, Android, and more to find reliable IT security tools.
Explore a comprehensive database of common software attack patterns to help identify, understand, and defend against cybersecurity threats.
Create and manage security.txt files to help security researchers contact your website about vulnerabilities easily and securely.
Find free network security tools and downloads, including the open-source Nmap security scanner, plus resources for Linux, Windows, and UNIX systems.
PCI Security Standards Council offers global resources, training, and standards to help protect payment data and ensure safe, secure transactions worldwide.
Emsisoft offers advanced anti-malware and antivirus solutions for businesses, helping you detect, clean, and prevent threats with powerful cloud technology.
GitHub Security Lab helps you discover, understand, and address security threats in open source software through research, tools, and community insights.
BreakingSecurity.net offers cybersecurity tools and software for security audits, surveillance, and ethical hacking, helping you protect and test your systems.
360 Total Security offers free antivirus and cybersecurity tools to protect your PC from malware, ransomware, and online threats. Available for home and business.
Protect your Windows PCs and Android devices with antivirus tools, malware removal, and cybersecurity APIs to guard against viruses, spyware, and ransomware.
Stay updated on Apple’s latest security advancements, share your research, and collaborate with Apple to help protect users and earn recognition.
Clinch Script offers cloud application security assessments, helping you identify and fix vulnerabilities to keep your online apps safe and protected.
Bitdefender offers advanced cybersecurity software to protect your devices and data with threat prevention, detection, and response solutions worldwide.
Patchstack helps you secure your WordPress sites by detecting and patching vulnerabilities in plugins and themes, keeping your website safe and protected.
eScan offers advanced cybersecurity solutions for businesses and enterprises, protecting against malware, ransomware, phishing, and other digital threats.
ESET offers advanced cybersecurity tools for home and business, including antivirus, privacy protection, VPN, and parental controls. Available in Canada.
App Defense Alliance collaborates to protect apps and users from malware threats, now as part of the Linux Foundation. Available in multiple languages.
TrustedSec offers tailored cybersecurity consulting and services for businesses, including penetration testing, security design, compliance, and threat response.
Get trusted cyber security advice, report scams, and access resources to protect yourself and your business on Australia’s official cyber security website.
Cybereason offers an AI-powered cybersecurity platform for detecting, preventing, and responding to cyber threats across your business devices and networks.
Google Safe Browsing warns you about dangerous sites and downloads, helping protect your devices and data while you browse the web.
Discover security vulnerabilities, CVEs, exploits, and tools with Vulners—an all-in-one platform for tracking and managing cybersecurity threats.
SentinelOne offers AI-powered cybersecurity for enterprises, protecting endpoints, cloud, identity, and data with unified, automated security solutions.
Submit suspicious files or URLs for free automated malware analysis and get detailed threat reports powered by Falcon Sandbox and Hybrid Analysis tools.
Lionic offers advanced cybersecurity tools and services to protect your network, devices, and data from threats, with antivirus and secure browsing solutions.
360.cn offers security software, smart devices, and enterprise cloud solutions to help you stay safe online and protect your digital life. (Chinese site)
ZONER AntiVirus offers free downloads and online virus scanning to help protect your devices from malware and security threats. English language site.
Openwall offers open-source security tools, software downloads, and resources to strengthen password security and protect Unix and Linux systems.
Japanese cybersecurity firm offering security monitoring, diagnostics, consulting, and internal control support to protect your business information.
Trail of Bits offers expert security research and solutions to help organizations protect software, reduce risks, and strengthen code against cyber threats.
PT Security offers advanced cybersecurity solutions for businesses and government, helping prevent cyber threats with in-house technologies. Russian language site.
Wiz offers an all-in-one cloud security platform that helps teams detect, prevent, and respond to threats, making cloud development safer and faster.
UC Berkeley's Information Security Office shares alerts, resources, and training to help the campus community stay safe from cybersecurity threats and scams.
Learn how to protect yourself from scams, identity theft, and online threats with expert guides, security tips, and the latest info on digital safety.
Cofense helps organizations detect, respond to, and stop email phishing threats with AI-powered security tools and human-vetted threat intelligence.
FortiGuard Labs offers threat intelligence, outbreak alerts, and security tools to help you detect, prevent, and respond to cyber threats worldwide.
Analyze malware samples in a secure online sandbox. Triage offers in-depth malware analysis, trends, and customizable tools for cybersecurity professionals.
Aikido helps developers secure code, cloud, and apps by finding and fixing vulnerabilities fast—all in one easy-to-use security platform.
TEHTRIS offers automated cybersecurity solutions, using AI to detect and respond to cyberattacks without human intervention. Protect your business 24/7.
A Swiss cybersecurity site offering services, research, and insights on digital security and next-gen tech. Available in German and English.
OSSEC offers a free, open source host intrusion detection system with customizable security rules, machine learning, and multi-platform support.
Stay updated with the latest Microsoft security news, researcher leaderboards, and resources for reporting vulnerabilities and improving cybersecurity.
Read X41 D-Sec's expert white paper comparing the security of Chrome, Edge, and Internet Explorer for enterprise browser protection insights.
Learn how to use Content Security Policy (CSP) to protect your web applications from vulnerabilities like cross-site scripting with Google’s helpful guide.
Nartac Software offers IIS Crypto, a tool that helps you secure SSL/TLS settings on Windows servers with ease. Simple solutions for server security.