{"repo":"cryptoli/vps-sentinel","free":true,"listed":false,"github":"https://github.com/cryptoli/vps-sentinel","clone":"git clone https://github.com/cryptoli/vps-sentinel.git","description":"Lightweight Rust intrusion-signal monitor for Linux VPS hosts with alerts, active response, baselines, and a fleet panel.","language":"Rust","stars":25,"topics":["active-response","incident-response","intrusion-detection","linux","monitoring","rust","security","self-hosted","telegram-bot","vps"],"license":"MIT","category":"analytics","readme_excerpt":"vps-sentinel Lightweight Rust intrusion-signal monitoring and fleet security dashboard for Linux VPS hosts. 中文说明 Positioning vps-sentinel is a defensive monitoring tool. It aims to detect suspicious host activity early, show evidence, and suggest operator actions. It is not antivirus software, an exploit framework, a brute-force tool, a third-party scanner, a C2/backdoor, or a guarantee that a server is clean. Highlights Area Capabilities --- --- SSH and accounts Successful SSH logins, password logins, brute force, brute force followed by success, authorized keys drift, unsafe key-file state, new users, UID 0 users, and privilege-relevant changes. Baseline drift Stateful baselines for users, SSH keys, critical files, persistence entries, listeners, and service identities; semantic drift scoring reduces package-upgrade and dynamic-port noise. Process and GPU behavior Procfs process context, parent chain, systemd identity, package ownership, executable hash/owner, outbound profile, behavior-profile drift, known miner/scanner identity, and NVIDIA/ROCm GPU compute signals. Network and web probes Public listener ownership, firewall context, trusted-proxy client-IP recovery, Web probe family classification, exploit-path aggregation, error bursts, and source-IP response candidates. Active response Optional nftables/iptables source-IP blocking for high-confidence SSH and Web attack sources, temporary/permanent escalation, allowlists, trusted-proxy safety, and CLI unblock commands. At","default_branch":null,"files":null,"tree":[],"storefront":"/r/cryptoli","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/cryptoli/vps-sentinel/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}