Stamus Networks

Suricata-based network detection and response with an open-source community edition

ToolNetwork Detection & ResponseOpen SourceCloudSelf-hosted

Pricing: Contact for pricing

Updated June 2026.

What is Stamus Networks?

Stamus Networks develops Clear NDR, a network detection and response platform formerly marketed as the Stamus Security Platform. It is built on the open-source Suricata IDS/IPS engine and combines intrusion detection, network security monitoring, and NDR using signature-based, anomaly-based, and behavioral methods. It is offered as a commercial Enterprise edition and a free open-source Community edition, the successor to the SELKS project. The company also maintains the Suricata-based open-source tooling that underpins its commercial offering.

Best for: Teams wanting Suricata-based NDR with an open-source edition
Pros
  • Built on the widely used open-source Suricata engine, with a free Community edition
  • Reviewers highlight threat-hunting and incident-response capabilities
  • Supports on-premise, cloud, and air-gapped deployment options
Cons
  • Pricing is not published publicly and requires a direct quote request
  • Smaller independent review footprint than larger NDR vendors
  • No formal security certifications publicly documented

Key Features

Built on the open-source Suricata engine
Real-time deep packet inspection
Detection via signatures, heuristics, anomaly and machine-learning methods
Distributed probes with a central server
Guided threat hunting and attack-timeline visualization
Alert aggregation and suppression
Integration with SIEM, EDR, XDR and firewalls
Open-source Community edition (GPLv3, successor to SELKS)

Sources & references

Where the information on this listing comes from. Always verify pricing and capabilities against the vendor before a purchasing decision.

Spot an error, or do you represent Stamus Networks? Request a correction.