nowfound

Alternatives

Products that do what WAF Lynk does

Automated Threat Detection & IP Blocking

  1. 1LS
  2. 2SA

    Hi all, I'm excited to announce Stratoshark, a sibling application to Wireshark that lets you capture and analyze process activity (system calls) and log messages in the same way that Wireshark lets you capture and analyze network packets. If you would like to try it out you can download installers for Windows and macOS and source code for all platforms at https://stratoshark.org. AMA: I'm the goofball whose name is at the top of the "About" box in both applications, and I'll be happy to answer any questions you might have.

    2025 · stratoshark.org

  3. 3

    🛡️ Open-source and cloud-native Web Application Firewall (WAF) - bunkerity/bunkerweb

    2024 · github.com

  4. 4WM

    Howdy folk, I've been building this project as both a side project and my job for a little while now. The rationale behind it is while wireguard is a fantastic protocol cryptographically it leaves a lot to be desired when it comes to enrollment and end user device security. Obviously instead of using an off the shelf solution like tailscale, I decided to reinvent the wheel which has honestly been quite fun with learning about eBPF, and recently clustering and HA with etcd! The most recent version (in the docker container) contains about 6 months of very new work bringing it all from sqlite3…

    2024 · github.com

  5. 5AO

    This is a small PoC Python project for web server access logs analyzing to classify and dynamically block bad bots, such as L7 (application-level) DDoS bots, web scrappers and so on. We'll be happy to gather initial feedback on usability and features, especialy from people having good or bad experience wit bots. *Requirements* The analyzer relies on 3 Tempesta FW specific features which you still can get with other HTTP servers or accelerators: 1. JA5 client fingerprinting (https://tempesta-tech.com/knowledge-base/Traffic-Filtering-b...). This is a HTTP and TLS layers…

    Oct 2025 · github.com

  6. 6

    Fully managed DDoS protection

    2021

  7. 7SA

    Hi HN, I’ve been working on Shibuya, a next-generation Web Application Firewall (WAF) built from the ground up in Rust. I wanted to build a WAF that didn't just rely on legacy regex signatures but could understand intent and perform at line-rate using modern kernel features. What makes Shibuya different: Multi-Layer Pipeline: It integrates a high-performance proxy (built on Pingora) with rate limiting, bot detection, and threat intelligence. eBPF Kernel Filtering: For volumetric attacks, Shibuya can drop malicious packets at the kernel level using XDP before they consume userspace resources.…

    Feb 2026 · ghostklan.com

  8. 8

    Strong CDN security without gatekeeping

    Nov 2025

  9. 9AW

    Time to announce Noisy Sockets Shell, the first in a series of WireGuard powered applications I'm working on. Noisy Sockets Shell is an SSH replacement that uses WireGuard for authentication and encryption, and WebSockets for communication. CLI and browser client available.

    2024 · github.com

  10. 10

    An open-source, cloud-native WAF you fully control

    Jan 2026 · bunkerweb.io

  11. 11NW
  12. 12

    Setup in minutes, protect your assets from the edge

    Feb 2026 · atomicedge.io

  13. 13TY

    Hi HN, Some misbehaving networks drop WireGuard packets either by accident or on purpose. Commonly the latter is done with simple DPI rules that block the handshake initiation [1], but it could be applied to other message types as well. We thought it would be great if there was tool for folks to use as a quick litmus test to see if this happening for them, without having to configure a client to send data through a random, functional WireGuard tunnel to an untrusted remote host. So we built probe.sh. How it works: - The probe.sh web app is an Elixir Phoenix app that spawns a few gen_udp…

    2024 · probe.sh

  14. 14WA

    eBPF is an amazing technology that allows safely running user-supplied functions at pretty much arbitrary probe points in a kernel/user space context. Much has been written about how amazing this feature is for kernel observability. But as someone who writes user space code, what I find even more amazing is the support for tracing arbitrary user space programs, with no code changes and low overhead. However, doing in-depth analysis can get complicated and time-consuming. My goal with wachy was to make this debugging significantly easier/faster to use, by displaying traces in a TUI…

    2022 · rubrikinc.github.io

  15. 15
    GitHub7

    App firewall for your website.

    Nov 2025

  16. 16

    Nginx system WAF, Domain Management Real-time Monitoring

    Oct 2025

  17. 17LR

    Hi hackers! I'm a self-taught solo teenage dev ever wanted to show what you're doing right now on the internet? well I've been wanting to for a while, so I built Lynk, a lightweight macOS app that tracks your active apps, window titles, and daily usage in real time, and broadcasts that data over WebSockets. Oh and it also updates whenever you switch apps to connected clients! No SDKs, no APIs — just local tracking + a websocket endpoint you can ping from any language. GitHub: https://github.com/shaileshsaravanan/lynk

    2025 · github.com

  18. 18BT
  19. 19

    Stealth Chromium engine that stops scrapers and browser agents from getting blocked, with one line of code change. - tiliondev/fortress

    Jul 2026 · github.com

  20. 20PA
  21. 21

    AI-powered WAAP for real-time web & API protection

    May 2026 · clofix.com

  22. 22
    Netwoke77

    Where Connection Meets Disclosure.

    Apr 2026 · netwoke.app

  23. 23

    Website protection & CMS protection

    Nov 2025

  24. 24

    Real-time DDoS protection and WAF for websites

    Feb 2026

Ranked by how close each launch is in meaning, then by votes. Refine with a description →