secubox-openwrt/package/secubox
CyberMind-FR b542ac7d3c feat: WAF auto-ban, cache busting, deployment docs, CVE Layer 7 docs
Changes:
- Enable WAF auto-ban by default (sensitivity: moderate, min_severity: high)
- Add whitelist for common safe IPs (localhost, router)
- Add browser cache busting via version parameter in CSS loads
- Document deployment scripts in secubox-tools/README.md
- Create CVE Layer 7 architecture documentation

WAF auto-ban now active with:
- 3 threats within 5 minutes triggers ban
- 4-hour ban duration
- Critical CVEs (Log4Shell, SQLi, CMDi) ban immediately

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-02-28 18:06:12 +01:00
..
.appstore
luci-app-ai-insights
luci-app-auth-guardian feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-backup
luci-app-bandwidth-manager fix(bandwidth-manager): Fix traffic graphs for nftables kernel 2026-02-20 16:39:26 +01:00
luci-app-cdn-cache
luci-app-client-guardian feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-cloner
luci-app-config-advisor feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-cookie-tracker feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-crowdsec-dashboard
luci-app-cve-triage
luci-app-cyberfeed
luci-app-device-intel style(device-intel): Migrate dashboard views to KISS theme 2026-02-12 12:11:42 +01:00
luci-app-dns-master
luci-app-dns-provider feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-dnsguard
luci-app-domoticz fix(luci): Await form.Map.render() Promise before KissTheme.wrap() 2026-02-27 07:24:10 +01:00
luci-app-exposure feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-gitea feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-glances
luci-app-gotosocial
luci-app-haproxy
luci-app-hexojs
luci-app-interceptor perf(services-registry): Optimize RPCD handler for 200+ vhosts 2026-02-27 08:48:04 +01:00
luci-app-iot-guard
luci-app-ipblocklist
luci-app-jabber
luci-app-jellyfin feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-jitsi feat(v0.23.0): Matrix homeserver, SaaS Relay CDN caching, Media Hub dashboard 2026-02-20 11:44:26 +01:00
luci-app-ksm-manager
luci-app-localai fix(luci): Await form.Map.render() Promise before KissTheme.wrap() 2026-02-27 07:24:10 +01:00
luci-app-localrecall
luci-app-lyrion
luci-app-mac-guardian feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-magicmirror2
luci-app-mailserver fix: Mailserver webmail LXC detection, Nextcloud nginx MIME types 2026-02-26 13:56:06 +01:00
luci-app-master-link
luci-app-matrix
luci-app-media-flow
luci-app-media-hub
luci-app-meshname-dns feat(meshname-dns): Add decentralized .ygg domain resolution 2026-02-28 07:57:16 +01:00
luci-app-metablogizer fix(luci): Await form.Map.render() Promise before KissTheme.wrap() 2026-02-27 07:24:10 +01:00
luci-app-metabolizer feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-mitmproxy feat(mitmproxy): Add WAF Filters UI to LuCI dashboard 2026-02-17 16:02:58 +01:00
luci-app-mmpm feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-mqtt-bridge
luci-app-ndpid style(ndpid): Migrate dashboard and flows views to KISS theme 2026-02-12 13:51:36 +01:00
luci-app-netdata-dashboard
luci-app-network-anomaly feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-network-modes feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-network-tweaks style(network-tweaks): Migrate overview.js to KISS theme 2026-02-12 12:14:04 +01:00
luci-app-nextcloud feat(mesh): Yggdrasil extended peer discovery + bugfixes 2026-02-28 17:32:41 +01:00
luci-app-ollama
luci-app-openclaw fix(openclaw): Update Gemini models to 2.0/2.5 versions 2026-02-27 12:27:25 +01:00
luci-app-peertube
luci-app-picobrew
luci-app-saas-relay
luci-app-secubox feat: WAF auto-ban, cache busting, deployment docs, CVE Layer 7 docs 2026-02-28 18:06:12 +01:00
luci-app-secubox-admin
luci-app-secubox-mirror
luci-app-secubox-netdiag feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-secubox-netifyd feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-secubox-p2p
luci-app-secubox-portal fix(portal): Optimize get_vhosts RPC method for 191 vhosts 2026-02-26 12:27:39 +01:00
luci-app-secubox-security-threats
luci-app-secubox-users feat(secubox-users): Add Gitea integration with password sync 2026-02-25 13:42:41 +01:00
luci-app-service-registry
luci-app-simplex fix(luci): Await form.Map.render() Promise before KissTheme.wrap() 2026-02-27 07:24:10 +01:00
luci-app-streamlit fix(streamlit): Add Re-upload and Gitea Sync buttons to Apps table 2026-02-28 08:15:19 +01:00
luci-app-system-hub
luci-app-threat-analyst feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-tor-shield
luci-app-traffic-shaper feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-turn feat(turn): Add setup-nextcloud command for Nextcloud Talk 2026-02-21 18:11:42 +01:00
luci-app-vhost-manager feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-vm
luci-app-voip docs: Add Yggdrasil IPv6 overlay network milestone 2026-02-26 09:24:17 +01:00
luci-app-vortex-dns
luci-app-vortex-firewall feat(kiss): Collapsible multi-level navigation with extended Ollama features 2026-02-12 06:56:26 +01:00
luci-app-wazuh feat(luci-app-wazuh): Add KISS UI theme and add to feed 2026-02-14 16:36:44 +01:00
luci-app-webradio
luci-app-wireguard-dashboard feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-zigbee2mqtt
luci-app-zkp
luci-secubox-dnsguard
luci-theme-secubox feat(kiss-theme): Redesign navigation with service subcategories 2026-02-27 08:15:34 +01:00
secubox-ai-gateway feat(ai-gateway): Add Data Classifier (Sovereignty Engine) for ANSSI CSPN 2026-02-28 17:55:22 +01:00
secubox-app
secubox-app-adguardhome
secubox-app-auth-logger docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-backup
secubox-app-bonus feat(mesh): Yggdrasil extended peer discovery + bugfixes 2026-02-28 17:32:41 +01:00
secubox-app-crowdsec feat(crowdsec): Upgrade to v1.7.6 with Go 1.23 compatibility 2026-01-27 11:33:49 +01:00
secubox-app-crowdsec-custom
secubox-app-cs-firewall-bouncer
secubox-app-cyberfeed
secubox-app-device-intel fix(device-intel): Fix empty vendor column and add OUI emoji display 2026-02-04 18:33:10 +01:00
secubox-app-dns-master fix(dns-master): Make bump_serial POSIX-compatible 2026-02-17 07:34:47 +01:00
secubox-app-dns-provider feat(secubox-core): Add secubox-landing page generator 2026-02-08 06:15:37 +01:00
secubox-app-domoticz
secubox-app-exposure
secubox-app-gitea
secubox-app-gk2hub
secubox-app-glances
secubox-app-gotosocial
secubox-app-guacamole
secubox-app-haproxy feat(haproxy): Add CrowdSec HAProxy bouncer for dual-layer WAF 2026-02-26 16:05:37 +01:00
secubox-app-hexojs
secubox-app-ipblocklist
secubox-app-jabber
secubox-app-jellyfin
secubox-app-jitsi
secubox-app-ksmbd
secubox-app-localai
secubox-app-lyrion
secubox-app-lyrion-bridge
secubox-app-mac-guardian fix(device-intel): Fix empty vendor column and add OUI emoji display 2026-02-04 18:33:10 +01:00
secubox-app-magicmirror2
secubox-app-mailserver
secubox-app-matrix
secubox-app-meshname-dns feat(meshname-dns): Add decentralized .ygg domain resolution 2026-02-28 07:57:16 +01:00
secubox-app-metablogizer feat(routing): Centralize mitmproxy route management in secubox-core 2026-02-28 08:56:04 +01:00
secubox-app-metabolizer
secubox-app-mitmproxy feat: WAF auto-ban, cache busting, deployment docs, CVE Layer 7 docs 2026-02-28 18:06:12 +01:00
secubox-app-mmpm docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-ndpid docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-netifyd
secubox-app-nextcloud feat(nextcloud): Enhance LXC package with storage stats and backup management 2026-02-17 14:41:04 +01:00
secubox-app-nodogsplash
secubox-app-ollama
secubox-app-openclaw feat(waf): Never fallback to LuCI, add funny 404 page + OpenClaw package 2026-02-27 09:23:43 +01:00
secubox-app-peertube feat(routing): Centralize mitmproxy route management in secubox-core 2026-02-28 08:56:04 +01:00
secubox-app-picobrew
secubox-app-pinafore
secubox-app-roundcube feat(apps): Convert Docker-based apps to LXC 2026-02-14 09:07:33 +01:00
secubox-app-rustdesk
secubox-app-saas-relay feat(v0.23.0): Matrix homeserver, SaaS Relay CDN caching, Media Hub dashboard 2026-02-20 11:44:26 +01:00
secubox-app-simplex
secubox-app-smbfs feat: Add smbfs mount manager, Jellyfin READMEs, Glances host visibility, planning updates 2026-02-04 21:02:46 +01:00
secubox-app-squeezelite
secubox-app-streamlit feat(routing): Centralize mitmproxy route management in secubox-core 2026-02-28 08:56:04 +01:00
secubox-app-streamlit-evolution
secubox-app-talk-hpb
secubox-app-tor feat(mesh): Yggdrasil extended peer discovery + bugfixes 2026-02-28 17:32:41 +01:00
secubox-app-turn
secubox-app-vhost-manager feat(routing): Centralize mitmproxy route management in secubox-core 2026-02-28 08:56:04 +01:00
secubox-app-voip
secubox-app-wazuh fix(wazuh): Handle multiple deb archive compression formats 2026-02-14 14:28:15 +01:00
secubox-app-webapp
secubox-app-webradio
secubox-app-yggdrasil-discovery feat(mesh): Yggdrasil extended peer discovery + bugfixes 2026-02-28 17:32:41 +01:00
secubox-app-zigbee2mqtt
secubox-base docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-config-advisor
secubox-console feat(p2p): Release v0.6.0 - MirrorBox NetMesh Catalog 2026-01-31 11:56:18 +01:00
secubox-content-pkg feat: P2P App Store, Remote Access & Mesh Media packages 2026-02-05 00:33:53 +01:00
secubox-cookie-tracker feat(interceptor): Add InterceptoR transparent traffic interception 2026-02-11 10:58:53 +01:00
secubox-core feat(routing): Centralize mitmproxy route management in secubox-core 2026-02-28 08:56:04 +01:00
secubox-core-users
secubox-cve-triage
secubox-dns-guard
secubox-identity feat(mirrornet): Add v0.19 MirrorNetworking core packages 2026-02-05 18:43:19 +01:00
secubox-iot-guard
secubox-localrecall feat(ai): Add v0.19 AI agent packages 2026-02-05 18:58:08 +01:00
secubox-master-link
secubox-mcp-server feat(ai): Integrate MCP server and threat-analyst with AI Gateway 2026-02-28 17:59:20 +01:00
secubox-mirrornet feat(mesh): Yggdrasil extended peer discovery + bugfixes 2026-02-28 17:32:41 +01:00
secubox-network-anomaly
secubox-p2p
secubox-p2p-intel
secubox-threat-analyst feat(ai): Integrate MCP server and threat-analyst with AI Gateway 2026-02-28 17:59:20 +01:00
secubox-vortex-dns
secubox-vortex-firewall
secubox-wazuh-manager
zkp-hamiltonian fix(zkp-hamiltonian): ARM64 build fixes and RPCD CLI flag corrections 2026-02-24 10:50:25 +01:00
PUNK-EXPOSURE.md feat(jellyfin): Add secubox-app-jellyfin and luci-app-jellyfin packages 2026-02-04 14:50:59 +01:00
VORTEX-DNS-FIREWALL.md feat(vortex-firewall): Add DNS-level threat blocking with x47 multiplier 2026-02-11 06:58:02 +01:00