# ysrc/yulong-hids-archived

[archived] 一款实验性质的主机入侵检测系统

Repository: https://github.com/ysrc/yulong-hids-archived
Canonical: https://ross.abutalabs.com/products/yulong-hids-archived
Language: Go
License: NOASSERTION
License Family: other
Topics: hids, intrusion-detection
Archived: true
Last push: 2020-06-29T15:38:38+00:00

## Health v2 (maintenance only)
Score: 10/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 0, release rhythm 8, longevity 100
- inputs: {"age_days": 3149, "days_push": 2256, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: archived, no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 2184, forks 580 (observed 2026-08-28T04:06:23.560823+00:00)

## What it is
Yulong HIDS is an open-source host intrusion detection system composed of an Agent, Daemon, Server, and Web console that collects host information and monitors file, network, and command behavior to detect intrusions in real time. It supports custom detection rules, threat intelligence lookups, and rapid blocking of malicious processes and files.

## Use cases
- detect intrusions on linux servers in real time
- monitor file changes and command execution on hosts
- alert on webshell writes and abnormal logins
- block malicious processes and files quickly
- write custom detection rules for host behavior
- centralize host security monitoring across many servers

## When to choose
- you want a self-hosted open-source HIDS to study or fork
- you need real-time host behavior monitoring with custom rules
- you want to learn HIDS architecture for a security engineering project

## When to avoid
- you need a maintained product with active support
- you lack in-house security analysis expertise to tune rules
- you need support for office or Docker environments rather than production servers

## Facets
- artifact type: application
- maturity: abandoned
- function: monitoring, alerting, security, logging
- domain: security, monitoring
- platform: windows, cross-platform, self-hosted
- tags: hids, intrusion-detection, host-security, agent-based, threat-detection, archived, devops, linux, docker

## Member repositories
- ysrc/yulong-hids-archived (main) score 10

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:06:23.560823+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T02:48:14.391681+00:00, confidence not recorded.
  - readme: https://github.com/ysrc/yulong-hids-archived (fetched 2026-08-28T04:06:23.560823+00:00, sha 527c5a5c2e6e)
- Data as of 2026-08-30T08:39:29.467469+00:00.
