AbstractionsLab/idps-escape

IDPS-ESCAPE (Intrusion Detection and Prevention System - Enhanced Security through a Cooperative Anomaly Prediction Engine), part of project CyFORT: open-source SOAR system powered by a Risk-aware Anomaly Detection-based Automated Response (RADAR) subsystem and a deep learning-based AD subsystem (SONAR), integrated with Wazuh, Flowintel, Suricata

41
/ 100
Emerging

This system helps Small and Medium-sized Enterprises (SMEs), CERT/CSIRT entities, SOC managers, system administrators, and security engineers automatically detect and respond to cybersecurity threats. It takes in network traffic, system logs, and other security event data, then analyzes it for suspicious activity using a combination of signature-based rules and advanced machine learning. The output is automated alerts, incident response actions like host isolation, and created incident cases, ensuring a proactive defense.

Use this if you manage IT infrastructure for an SME or are part of a security operations team needing an automated system to identify and neutralize cyber threats effectively.

Not ideal if you're looking for a simple antivirus solution or don't have the technical staff to manage a comprehensive security orchestration and automation platform.

cybersecurity threat-detection incident-response security-operations IT-security
No Package No Dependents
Maintenance 10 / 25
Adoption 5 / 25
Maturity 16 / 25
Community 10 / 25

How are scores calculated?

Stars

14

Forks

2

Language

Python

License

AGPL-3.0

Last pushed

Feb 09, 2026

Commits (30d)

0

Get this data via API

curl "https://pt-edge.onrender.com/api/v1/quality/ml-frameworks/AbstractionsLab/idps-escape"

Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.