* [SysWarden v4.03.2](https://github.com/duggytuxy/syswarden) – Enterprise-grade hardened HIDS/HIPS for Linux that enforces CIS Level 2 hardening and orchestrates zero-trust network defense plus a Go-based WAAP/WAF engine. * [socket-proxy 1.13.1](https://github.com/wollomatic/socket-proxy) – Lightweight secure-by-default Unix socket proxy offering regex-based method allowlists, IP-based access control, and a minimal Go-only image. * [Zen 1.8.37](https://github.com/AikidoSec/firewall-node) – Embedded Web Application Firewall for Node.js that autonomously scans input and blocks SQL injection, SSRF, path traversal, and other attacks. * [Netspoc 2026-08-17-1047](https://github.com/hknutzen/Netspoc) – Network security policy compiler that generates and optimizes device-specific firewall rules from a central ruleset and topology.