Port details |
- maltrail Malicious traffic detection system, utilizing public (black)lists
- 0.74 security =5 0.66Version of this port present on the latest quarterly branch.
- Maintainer: m.muenz@gmail.com
- Port Added: 2018-11-09 09:01:47
- Last Update: 2024-10-06 19:40:56
- Commit Hash: 1d0ac63
- People watching this port, also watch:: nginx, rabbitmq, node, haproxy, dovecot
- Also Listed In: python
- License: MIT
- WWW:
- https://github.com/stamparm/maltrail
- Description:
- Maltrail is a malicious traffic detection system, utilizing publicly
available (black)lists containing malicious and/or generally suspicious
trails, along with static trails compiled from various AV reports and
custom user defined lists, where trail can be anything from domain name
(e.g. zvpprsensinaix.com for Banjori malware),
URL (e.g. http://109.162.38.120/harsh02.exe for known malicious executable),
IP address (e.g. 185.130.5.231 for known attacker) or HTTP User-Agent header
value (e.g. sqlmap for automatic SQL injection and database takeover tool).
Also, it uses (optional) advanced heuristic mechanisms that can help in
discovery of unknown threats (e.g. new malware).
- ¦ ¦ ¦ ¦
- Manual pages:
- FreshPorts has no man page information for this port.
- pkg-plist: as obtained via:
make generate-plist - Dependency lines:
-
- maltrail>0:security/maltrail
- To install the port:
- cd /usr/ports/security/maltrail/ && make install clean
- To add the package, run one of these commands:
- pkg install security/maltrail
- pkg install maltrail
NOTE: If this package has multiple flavors (see below), then use one of them instead of the name specified above.- PKGNAME: maltrail
- Flavors: there is no flavor information for this port.
- distinfo:
- TIMESTAMP = 1728226768
SHA256 (stamparm-maltrail-0.74_GH0.tar.gz) = edec4b1e06ad140f35e6892f4c96807aadfab30164eca4799c6a48e64a3c174d
SIZE (stamparm-maltrail-0.74_GH0.tar.gz) = 9882172
Packages (timestamps in pop-ups are UTC):
- Dependencies
- NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
- Runtime dependencies:
-
- py311-pcapy-ng>=0 : net/py-pcapy-ng@py311
- py311-sqlite3>=0 : databases/py-sqlite3@py311
- python3.11 : lang/python311
- There are no ports dependent upon this port
Configuration Options:
- No options to configure
- Options name:
- security_maltrail
- USES:
- python:run
- FreshPorts was unable to extract/find any pkg message
- Master Sites:
|
Commit History - (may be incomplete: for full details, see links to repositories near top of page) |
Commit | Credits | Log message |
0.74 06 Oct 2024 19:40:56 |
Joel Bodenmann (jbo) Author: Michael Muenz |
security/maltrail: Update to 0.74
Changelogs: https://github.com/stamparm/maltrail/blob/master/CHANGELOG
PR: 281905 |
0.66 02 Mar 2024 13:53:22 |
Muhammad Moinur Rahman (bofh) Author: Michael Muenz |
security/maltrail: Update version 0.60=>0.66
Changelog: https://github.com/stamparm/maltrail/blob/master/CHANGELOG
PR: 277137
Approved by: submitter is maintainer |
0.60 03 Aug 2023 06:27:40 |
Fernando Apesteguía (fernape) Author: Michael Muenz |
security/maltrail: Update to 0.60
ChangeLog: https://github.com/stamparm/maltrail/blob/master/CHANGELOG
PR: 272882
Reported by: m.muenz@gmail.com (maintainer) |
0.55 22 Mar 2023 20:15:28 |
Robert Clausecker (fuz) Author: Michael Muenz |
security/maltrail: update to 0.55
Changelog: https://github.com/stamparm/maltrail/blob/master/CHANGELOG
PR: 270238 |
0.53 05 Jan 2023 19:09:06 |
Fernando Apesteguía (fernape) Author: Michael Muenz |
security/maltrail: Update to 0.53
ChangeLog: https://github.com/stamparm/maltrail/blob/master/CHANGELOG
* Defunct 360-netlab feeds were deleted
* "potential data leakage" heur is improved
* Multiple updates and optimizations for regular static trails and the
whitelist
* "potential iot-malware download" heur is improved
* Multiple updates and optimizations for regular static trails and the
whitelist
* New Wiki pages are added
* Fixed deadlock of Docker output to stdout
* Definition of network interfaces is improved
* Fixed regex for /360bigviktor.py feed
* Fixed syscalls handling
* "potential remote code execution" heuristic is improved
* Multiple updates and optimizations for regular static trails and the
whitelist
* "potential remote code execution" heurfor CVE-2022-30190 is updated
* "Maltrail detection nuances" wiki-page is updated
* "Trail classes" wiki-page is updated
* Multiple updates and optimizations for regular static trails and the
whitelist
* Fixed row rendering in UI
* Multiple updates and optimizations for regular static trails and the
whitelist
PR: 268704
Reported by: m.muenz@gmail.com (maintainer) |
07 Sep 2022 21:58:51 |
Stefan Eßer (se) |
Remove WWW entries moved into port Makefiles
Commit b7f05445c00f has added WWW entries to port Makefiles based on
WWW: lines in pkg-descr files.
This commit removes the WWW: lines of moved-over URLs from these
pkg-descr files.
Approved by: portmgr (tcberner) |
0.48 07 Sep 2022 21:10:59 |
Stefan Eßer (se) |
Add WWW entries to port Makefiles
It has been common practice to have one or more URLs at the end of the
ports' pkg-descr files, one per line and prefixed with "WWW:". These
URLs should point at a project website or other relevant resources.
Access to these URLs required processing of the pkg-descr files, and
they have often become stale over time. If more than one such URL was
present in a pkg-descr file, only the first one was tarnsfered into
the port INDEX, but for many ports only the last line did contain the
port specific URL to further information.
There have been several proposals to make a project URL available as
a macro in the ports' Makefiles, over time.
(Only the first 15 lines of the commit message are shown above ) |
0.48 20 Aug 2022 02:25:51 |
Neel Chauhan (nc) Author: Michael Muenz |
security/maltrail: Update to 0.48
Changes: https://github.com/stamparm/maltrail/compare/0.47...0.48
PR: 265945 |
0.47 06 Jul 2022 20:49:56 |
Fernando Apesteguía (fernape) Author: Michael Muenz |
security/maltrail: Update to 0.47
ChangeLog: https://github.com/stamparm/maltrail/compare/0.45...0.47
PR: 265007
Reported by: m.muenz@gmail.com (maintainer) |
0.45 21 May 2022 16:54:06 |
Nuno Teixeira (eduardo) Author: Michael Muenz |
security/maltrail: Update to 0.45
- use DISTVERSION instead of PORTVERSION
- pet portclippy
ChangeLog: https://github.com/stamparm/maltrail/blob/master/CHANGELOG
PR: 263727 |
0.44 01 Apr 2022 11:01:43 |
Mikael Urankar (mikael) Author: Michael Muenz |
security/maltrail: Update to 0.44
- switch from pcapy to pcapy-ng
Changes: https://github.com/stamparm/maltrail/compare/0.43...0.44
PR: 262973 |
0.40 26 Dec 2021 06:48:49 |
Li-Wen Hsu (lwhsu) Author: Michael |
security/maltrail: Update to 0.40
Changes: https://github.com/stamparm/maltrail/compare/0.39...0.40
PR: 260638 |
0.37 04 Sep 2021 15:35:57 |
Tobias C. Berner (tcberner) Author: Michael |
security/maltrail: Update to 0.37
Changes:
https://github.com/stamparm/maltrail/compare/0.36...0.37
PR: 258244 |
0.35 14 Jul 2021 10:47:19 |
Bernhard Froehlich (decke) |
security/maltrail: Update to 0.35
PR: 256993
Submitted by: Michael Muenz <m.muenz@gmail.com> (maintainer) |
0.32 12 May 2021 23:00:20 |
Neel Chauhan (nc) Author: Michael Muenz |
security/maltrail: Update to 0.32
Changes: https://github.com/stamparm/maltrail/blob/master/CHANGELOG
PR: 255814 |
0.30 07 Apr 2021 08:09:01 |
Mathieu Arnold (mat) |
One more small cleanup, forgotten yesterday.
Reported by: lwhsu |
0.30 06 Apr 2021 14:31:07 |
Mathieu Arnold (mat) |
Remove # $FreeBSD$ from Makefiles. |
0.30 17 Mar 2021 16:25:57 |
lwhsu |
security/maltrail: Update to 0.30
PR: 254364
Submitted by: Michael Muenz <m.muenz@gmail.com> (maintainer) |
0.28 07 Jan 2021 10:20:36 |
kai |
security/maltrail: Update to 0.28
Changelog:
https://github.com/stamparm/maltrail/compare/0.27...0.28
PR: 252430
Submitted by: Michael Muenz <m.muenz@gmail.com> (maintainer) |
0.27 16 Dec 2020 05:33:27 |
kai |
security/maltrail: Update to 0.27
Changelog:
https://github.com/stamparm/maltrail/compare/0.26...0.27
PR: 251597
Submitted by: Michael Muenz <m.muenz@gmail.com> (maintainer) |
0.26 26 Nov 2020 09:00:34 |
fernape |
security/maltrail: Update to 0.26
PR: 251382
Submitted by: m.muenz@gmail.com (maintainer) |
0.24 18 Sep 2020 21:02:33 |
yuri |
security/maltrail: Update 0.23 -> 0.24
PR: 249435
Submitted by: m.muenz@gmail.com (maintainer) |
0.23 15 Sep 2020 13:29:49 |
decke |
security/maltrail: Update to 0.23
PR: 248879
Submitted by: Michael Muenz <m.muenz@gmail.com> (maintainer) |
0.22 06 Jul 2020 13:32:03 |
lwhsu |
Update to 0.22
PR: 247798
Submitted by: Michael Muenz <m.muenz@gmail.com> (maintainer) |
0.21 08 Jun 2020 12:00:40 |
decke |
security/maltrail: Update to 0.21
PR: 247078
Submitted by: Michael Muenz <m.muenz@gmail.com> (maintainer) |
0.20 11 May 2020 21:22:40 |
decke |
security/maltrail: Update to 0.20
PR: 246386
Submitted by: Michael Muenz <m.muenz@gmail.com> (maintainer) |
0.19 09 Apr 2020 19:31:14 |
decke |
security/maltrail: Update to 0.19
PR: 245317
Submitted by: Michael Muenz <m.muenz@gmail.com> (maintainer) |
0.17 10 Feb 2020 12:48:50 |
decke |
security/maltrail:
- Update to 0.17
- maltrail does support python3 now
PR: 244019
Submitted by: Michael Muenz <m.muenz@gmail.com> (maintainer) |
0.16 05 Nov 2019 16:01:07 |
decke |
security/maltrail: Update to 0.16
PR: 241736
Submitted by: Michael Muenz <m.muenz@gmail.com> (maintainer) |
0.15 07 Oct 2019 17:19:46 |
swills |
security/maltrail: Update to 0.15
PR: 241008
Submitted by: Michael Muenz <m.muenz@gmail.com> (maintainer) |
0.14 18 Jul 2019 15:08:44 |
decke |
security/maltrail:
- Update to 0.14
- Add missing sqlite3 dependency
- Limit to python 2.7 because 3.x is not supported yet [1]
PR: 239110
Submitted by: Michael Muenz <m.muenz@gmail.com> (maintainer)
See: https://github.com/stamparm/maltrail/issues/162 [1] |
0.13 25 Jun 2019 09:37:14 |
decke |
security/maltrail: Update to 0.13
PR: 238791
Submitted by: Michael Muenz <m.muenz@gmail.com> (maintainer) |
0.12 15 Mar 2019 08:47:18 |
decke |
security/maltrail:
- Update to 0.12
- Fix portlint warnings in pkg-descr while here
PR: 236531
Submitted by: Michael Muenz <m.muenz@gmail.com> (maintainer) |
0.11 09 Nov 2018 09:01:25 |
decke |
Maltrail is a malicious traffic detection system, utilizing publicly
available (black)lists containing malicious and/or generally suspicious
trails, along with static trails compiled from various AV reports and
custom user defined lists, where trail can be anything from domain name
(e.g. zvpprsensinaix.com for Banjori malware),
URL (e.g. http://109.162.38.120/harsh02.exe for known malicious executable),
IP address (e.g. 185.130.5.231 for known attacker) or HTTP User-Agent header
value (e.g. sqlmap for automatic SQL injection and database takeover tool).
Also, it uses (optional) advanced heuristic mechanisms that can help in
discovery of unknown threats (e.g. new malware).
WWW: https://github.com/stamparm/maltrail
PR: 233074
Submitted by: Michael Muenz <m.muenz@gmail.com> |