Encrypted traffic interception on Hetzner and Linode targeting Jabber service

This page summarizes the projects mentioned and recommended in the original post on news.ycombinator.com

Our great sponsors
  • WorkOS - The modern identity platform for B2B SaaS
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • SaaSHub - Software Alternatives and Reviews
  • certspotter

    Certificate Transparency Log Monitor

  • Indeed, a CT monitor which sends alerts about legitimate certificates is pretty much useless due to noise. My service, Cert Spotter, provides an API endpoint[1] which you can upload your CSRs to, so you don't get alerted about certificates using the same key as the CSR. The open source version of Cert Spotter can invoke a script[2] when a certificate is discovered, and the script can cross reference against a list of legitimate certs.

    [1] https://sslmate.com/help/reference/certspotter_authorization...

    [2] https://github.com/SSLMate/certspotter/blob/master/man/certs...

  • rap

    Raspberry Pi RIPE Atlas Probe

  • Is it just me, or would a recurring RIPE Atlas measurement be a great way to detect fuckery like this?

    https://atlas.ripe.net/

  • WorkOS

    The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.

    WorkOS logo
  • check_ssl_cert

    A shell script (that can be used as a Nagios/Icinga plugin) to check an SSL/TLS connection.

  • https://github.com/matteocorti/check_ssl_cert

NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts