secubox-openwrt/package/secubox
CyberMind-FR e58f479cd4 feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats
Add detection patterns for latest actively exploited vulnerabilities:
- CVE-2025-55182 (React2Shell, CVSS 10.0)
- CVE-2025-8110 (Gogs RCE), CVE-2025-53770 (SharePoint)
- CVE-2025-52691 (SmarterMail), CVE-2025-40551 (SolarWinds)
- CVE-2024-47575 (FortiManager), CVE-2024-21887 (Ivanti)
- CVE-2024-3400, CVE-2024-0012, CVE-2024-9474 (PAN-OS)

New attack categories based on OWASP Top 10 2025:
- HTTP Request Smuggling (TE.CL/CL.TE conflicts)
- AI/LLM Prompt Injection (ChatML, instruction markers)
- WAF Bypass techniques (Unicode normalization, double encoding)
- Supply Chain attacks (CI/CD poisoning, dependency confusion)
- Extended SSTI (Jinja2, Freemarker, Velocity, Thymeleaf)
- API Abuse (BOLA/IDOR, mass assignment)

CrowdSec scenarios split into 11 separate files for reliability.

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
2026-02-12 05:02:57 +01:00
..
.appstore
luci-app-ai-insights feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-auth-guardian feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-backup feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-bandwidth-manager feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-cdn-cache feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-client-guardian feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-cloner feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-config-advisor feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-cookie-tracker feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-crowdsec-dashboard feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-cve-triage feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-cyberfeed feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-device-intel feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-dns-provider feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-dnsguard feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-domoticz feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-exposure feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-gitea feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-glances feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-haproxy feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-hexojs feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-interceptor feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-iot-guard feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-jellyfin feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-jitsi feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-ksm-manager feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-localai feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-localrecall feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-lyrion feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-mac-guardian feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-magicmirror2 feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-mailserver feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-master-link feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-media-flow feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-metablogizer feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-metabolizer feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-mitmproxy feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-mmpm feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-mqtt-bridge feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-ndpid feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-netdata-dashboard feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-network-anomaly feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-network-modes feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-network-tweaks feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-nextcloud feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-ollama feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-picobrew feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-secubox feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-secubox-admin feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-secubox-mirror feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-secubox-netdiag feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-secubox-netifyd feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-secubox-p2p feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-secubox-portal feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-secubox-security-threats feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-service-registry feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-simplex feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-streamlit feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-system-hub feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-threat-analyst feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-tor-shield feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-traffic-shaper feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-vhost-manager feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-vortex-dns feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-vortex-firewall feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-wireguard-dashboard feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-app-zigbee2mqtt feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-secubox-dnsguard feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
luci-theme-secubox feat(theme): Add global KISS mode support to SecuBox theme 2026-02-11 12:19:49 +01:00
secubox-app docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-adguardhome docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-auth-logger docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-backup feat: Add unified backup manager, custom mail server, DNS subdomain generator 2026-02-05 10:40:32 +01:00
secubox-app-bonus feat(mailserver): Add password reset UI for mail users 2026-02-06 06:13:41 +01:00
secubox-app-crowdsec feat(crowdsec): Upgrade to v1.7.6 with Go 1.23 compatibility 2026-01-27 11:33:49 +01:00
secubox-app-crowdsec-custom docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-cs-firewall-bouncer docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-cyberfeed docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-device-intel fix(device-intel): Fix empty vendor column and add OUI emoji display 2026-02-04 18:33:10 +01:00
secubox-app-dns-provider feat(secubox-core): Add secubox-landing page generator 2026-02-08 06:15:37 +01:00
secubox-app-domoticz fix(domoticz): Correct README to say Debian instead of Alpine 2026-02-04 22:06:53 +01:00
secubox-app-exposure feat(secubox-core): Add secubox-landing page generator 2026-02-08 06:15:37 +01:00
secubox-app-gitea docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-glances feat: Add smbfs mount manager, Jellyfin READMEs, Glances host visibility, planning updates 2026-02-04 21:02:46 +01:00
secubox-app-guacamole feat: P2P App Store, Remote Access & Mesh Media packages 2026-02-05 00:33:53 +01:00
secubox-app-haproxy feat(haproxy): Add dynamic path ACL management commands 2026-02-09 06:56:54 +01:00
secubox-app-hexojs fix(deps): Remove libubox/libubus/libuci from all SecuBox package dependencies 2026-01-30 19:46:27 +01:00
secubox-app-jellyfin feat(secubox-core): Add secubox-landing page generator 2026-02-08 06:15:37 +01:00
secubox-app-jitsi fix(jitsi): Use LAN IP instead of localhost for backends 2026-02-08 11:36:58 +01:00
secubox-app-ksmbd feat: P2P App Store, Remote Access & Mesh Media packages 2026-02-05 00:33:53 +01:00
secubox-app-localai feat(localai): Upgrade to v3.9.0 with Agent Jobs and Memory Reclaimer 2026-02-05 05:02:45 +01:00
secubox-app-lyrion feat(lyrion): Add WAN access checkbox for firewall rules 2026-02-03 08:06:54 +01:00
secubox-app-mac-guardian fix(device-intel): Fix empty vendor column and add OUI emoji display 2026-02-04 18:33:10 +01:00
secubox-app-magicmirror2 docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-mailserver fix(mailserver): Align Postfix/Dovecot mail paths for Roundcube visibility 2026-02-06 12:15:47 +01:00
secubox-app-metablogizer feat(gitea): Create repositories as private by default 2026-02-10 08:22:33 +01:00
secubox-app-metabolizer feat(hexojs): Add Build & Publish LuCI interface for Gitea workflow 2026-01-26 16:18:40 +01:00
secubox-app-mitmproxy feat(waf): Update WAF scenarios with 2024-2025 CVEs and OWASP threats 2026-02-12 05:02:57 +01:00
secubox-app-mmpm docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-ndpid docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-netifyd
secubox-app-nextcloud docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-nodogsplash docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-ollama docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-picobrew docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-rustdesk feat: P2P App Store, Remote Access & Mesh Media packages 2026-02-05 00:33:53 +01:00
secubox-app-simplex feat(secubox-core): Add secubox-landing page generator 2026-02-08 06:15:37 +01:00
secubox-app-smbfs feat: Add smbfs mount manager, Jellyfin READMEs, Glances host visibility, planning updates 2026-02-04 21:02:46 +01:00
secubox-app-streamlit feat(gitea): Create repositories as private by default 2026-02-10 08:22:33 +01:00
secubox-app-streamlit-evolution feat(evolution): Real-time sync for all tabs (60s cache) 2026-02-08 07:53:29 +01:00
secubox-app-tor feat: Add Gitea auto-push and fix Tor Shield server mode 2026-02-10 06:42:50 +01:00
secubox-app-vhost-manager feat(vhost-manager): Add centralized VHost manager 2026-02-05 10:16:19 +01:00
secubox-app-webapp docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-app-zigbee2mqtt fix(zigbee2mqtt): Fix adapter type, config format, and add MQTT dependency 2026-02-04 19:29:59 +01:00
secubox-base docs(secubox): Add KISS README for all 46 remaining packages 2026-02-03 07:34:06 +01:00
secubox-config-advisor fix(config-advisor): BusyBox ash compatibility fixes 2026-02-06 06:08:28 +01:00
secubox-console feat(p2p): Release v0.6.0 - MirrorBox NetMesh Catalog 2026-01-31 11:56:18 +01:00
secubox-content-pkg feat: P2P App Store, Remote Access & Mesh Media packages 2026-02-05 00:33:53 +01:00
secubox-cookie-tracker feat(interceptor): Add InterceptoR transparent traffic interception 2026-02-11 10:58:53 +01:00
secubox-core feat(core): Add 3-tier stats persistence and LuCI tree navigation 2026-02-11 11:23:27 +01:00
secubox-cve-triage feat: Add CVE Triage Agent and Vortex DNS, fix webmail login 2026-02-05 12:19:54 +01:00
secubox-dns-guard feat: Add threat-analyst, dns-guard, mcp-server and DNS provider DynDNS 2026-02-05 08:30:28 +01:00
secubox-identity feat(mirrornet): Add v0.19 MirrorNetworking core packages 2026-02-05 18:43:19 +01:00
secubox-iot-guard feat(iot-guard): Add IoT device isolation and security monitoring 2026-02-11 10:36:04 +01:00
secubox-localrecall feat(ai): Add v0.19 AI agent packages 2026-02-05 18:58:08 +01:00
secubox-master-link feat(cloner): Add SecuBox Station Cloner/Deployer 2026-02-08 06:52:59 +01:00
secubox-mcp-server feat: Add threat-analyst, dns-guard, mcp-server and DNS provider DynDNS 2026-02-05 08:30:28 +01:00
secubox-mirrornet feat(mirrornet): Add v0.19 MirrorNetworking core packages 2026-02-05 18:43:19 +01:00
secubox-network-anomaly feat(ai): Add v0.19 AI agent packages 2026-02-05 18:58:08 +01:00
secubox-p2p feat: P2P App Store, Remote Access & Mesh Media packages 2026-02-05 00:33:53 +01:00
secubox-p2p-intel feat(mirrornet): Add v0.19 MirrorNetworking core packages 2026-02-05 18:43:19 +01:00
secubox-threat-analyst feat: Add threat-analyst, dns-guard, mcp-server and DNS provider DynDNS 2026-02-05 08:30:28 +01:00
secubox-vortex-dns feat(vortex-dns): Complete meshed subdomain delegation system 2026-02-05 13:23:18 +01:00
secubox-vortex-firewall feat(vortex-firewall): Add BIND RPZ support for DNS blocking 2026-02-11 08:15:26 +01:00
PUNK-EXPOSURE.md feat(jellyfin): Add secubox-app-jellyfin and luci-app-jellyfin packages 2026-02-04 14:50:59 +01:00
VORTEX-DNS-FIREWALL.md feat(vortex-firewall): Add DNS-level threat blocking with x47 multiplier 2026-02-11 06:58:02 +01:00