This module provides attack surface reduction enhancements against the HTTP Flood Attacks at the web application level. Massive crawling/scanning tools, HTTP Flood tools can be detected and blocked by this module via htaccess, firewall or iptables, etc. (like mod_evasive)

You can use this module by including "iosec.php" to any PHP file which wants to be protected.

You can test module here: http://www.iosec.org/test.php (demo)

Watch the Proof of Concept video: http://goo.gl/dSiAL

Hakin9 IT Security Magazine Article about IOSEC http://goo.gl/aQM4Di (different format -> http://goo.gl/JKMUPN)

IJNSA Article at http://goo.gl/LLxRdX

WP Plugin Page http://goo.gl/nF5nD

CHANGES v.1.8.2
- Iptables Auto Ban Bash Script Included
- Token Access via Implicit Deny
- Reverse Proxy Support
- reCAPTCHA Support

Do you want more features? Check for third party addons http://sf.net/projects/iosecaddons

Gökhan Muharremoğlu

Features

  • This is a unique project and it is the world's first web application flood guard script.
  • At web application (scripting) level you can,
  • - Block proxies. (only via HTTP header)
  • - Detect flooding IP addresses.
  • - Slow down or restrict access for automated tools (HTTP flood, brute force tools, vulnerability scanners, etc.)
  • - Save your server & backend infrastructure resources (database, cpu, ram, etc.) under an attack.
  • - Restrict access permanently or temporarily for listed IP addresses in "banlist" file.
  • - Notify yourself via email alerts when attacks begin.
  • - Implicit deny for DoS/DDoS attacks
  • - Integrate it with CloudFlare, Firewall, Iptables, etc.
  • - Reduce attack surface at OSI Layer 7.
  • In 2 months, more than 1000 downloads now, thank you.
  • Don't forget to read articles about IOSEC (links above) to learn what it does precisely.
  • IOSEC has been used by over 15.000 sites in 2013!

Project Samples

Project Activity

See All Activity >

License

GNU Library or Lesser General Public License version 3.0 (LGPLv3)

Follow HTTP Anti Flood/DoS Security Module

HTTP Anti Flood/DoS Security Module Web Site

Other Useful Business Software
Contract Automation Made Easy Icon
Contract Automation Made Easy

Use Docubee to easily gather data, generate contracts, share them your way, and collect secure eSignatures

Docubee is an intelligent contract automation platform that allows you to quickly and painlessly generate, manage, share, and sign contracts. Featuring powerful conditional logic-based workflows, generative AI technology, and an easily adaptable interface, Docubee makes it easy to automate your most complex contracts and agreements.
Rate This Project
Login To Rate This Project

User Ratings

★★★★★
★★★★
★★★
★★
4
0
0
0
0
ease 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5
features 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5
design 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5
support 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5

User Reviews

Be the first to post a review of HTTP Anti Flood/DoS Security Module!

Additional Project Details

Languages

English, Turkish

Intended Audience

Advanced End Users, System Administrators, End Users/Desktop, Testers, Security Professionals, Security

Programming Language

PHP

Database Environment

Flat-file

Related Categories

PHP Security Software, PHP Firewall Software, PHP Network Monitoring Software, PHP Brute Force Tool

Registered

2012-04-02