Crowdsec does it by using crowd-sourced blocklists (hence the name). So if an IP triggers a scenario on other machines, that malicious address will be proactively added to your blocklist before it ever gets a chance to impact your machine.
That is the big advantage of crowdsec over reactive-only solutions, like fail2ban.
daniskarma@lemmy.dbzer0.com 2 weeks ago
Precog bouncer. Asigned to the daemon of future cybercrimes. Obviously.