Linux Malware Detect (LMD / RFXN)
GPL-2.0
Licence:
GNU General Public License v2.0 or later GPL-2.0-or-later
PHP and web malware signatures, normalised into the IronGuardWP definition format, de-duplicated, and false-positive tested before release.
Attribution: Contains signature data licensed under the GNU GPL v2.0 or later.
Shipped as separately-updated data. These rules travel inside the downloaded definition bundle, which the plugin reads as data at runtime. They are never copied into, generated into, or linked with plugin source, so the plugin’s own licence is unaffected.
Required notice, reproduced verbatim
Notice not yet transcribed
The upstream copyright line and the GNU GPL v2.0 licence text, as carried by the released definition bundle.
Source
·
Licence text
Neo23x0 signature-base
DRL-1.1
Licence:
Detection Rule License 1.1 DRL-1.1
Web shell and PHP backdoor detection rules, adapted into the IronGuardWP definition format.
Attribution: Detection logic derived from rules licensed under the Detection Rule License (DRL) 1.1. Attribution to the original rule authors is retained.
The DRL permits commercial use and redistribution provided attribution is retained and derived rules stay under the DRL. The author of each individual rule is carried through the pipeline and reproduced per rule in the bundle’s attributions file.
Required notice, reproduced verbatim
Notice not yet transcribed
The Detection Rule License 1.1 text, plus the per-rule author attributions for the rules present in the current bundle.
Source
·
Licence text
NSA — Mitigating Web Shells
Public domain
Licence:
Work of the US Government, public domain (17 U.S.C. §105) LicenseRef-US-Gov-Public-Domain
Web-shell detection patterns and guidance.
Attribution: Derived from US Government work released into the public domain.
No attribution is legally required for a US Government public-domain work. We credit it anyway, and record it in the source ledger, so it has an explicit entry rather than an unrecorded one.
This licence requires no reproduced notice.
Source
·
Licence text
Web Shell Detector
MIT
Licence:
MIT License MIT
A file-digest database of known web shells, used for exact-match detection.
Attribution: Includes data from an MIT-licensed project; the MIT copyright notice is reproduced with the definition bundle.
Required notice, reproduced verbatim
Notice not yet transcribed
The MIT copyright line and permission notice exactly as carried by the shipped database file.
Source
·
Licence text
NVD / CVE
Public domain
Licence:
NVD and CVE Program terms of use LicenseRef-NVD-CVE-Terms
CVE identifiers and vulnerability metadata for WordPress plugins and themes, used for the vulnerability alerts in Pro.
Attribution: Vulnerability data from the National Vulnerability Database and the CVE Program.
NVD data carries no copyright, being a US Government work. The trademark and non-endorsement notices below are a separate obligation and are reproduced exactly as required — never paraphrased, never summarised.
Required notice, reproduced verbatim
CVE is a registered trademark of The MITRE Corporation.
This product uses data from the NVD API but is not endorsed or certified by the NVD.
Notice not yet transcribed
MITRE’s copyright designation and the CVE Program Terms of Use, transcribed from https://www.cve.org/Legal/TermsOfUse — the ToU grants the copyright licence "provided that you reproduce MITRE’s copyright designation and this license in any such copy".
Source
·
Licence text
Before launch
4 required notices on this page have not been transcribed from their sources yet and are shown as marked placeholders. Each must be copied word for word from the source. Do not paraphrase, do not summarise, and do not reconstruct a copyright line from memory.