Home›Java›Mods›KoraSecurity
KoraSecurity
ModsJava

KoraSecurity

Kora Security — Advanced Security Framework for Paper & Folia Protect your server against exploits, packet floods, bots, rate abuse and unfair mods…

⬇ Download on Spigot
[​IMG]
KoraSecurity — Advanced Security Framework for Paper & Folia
Protect your server against exploits, packet floods, bots, rate abuse and unfair mods — fully async, Folia-safe, privacy-first.
Spoiler: ✨ Key Features
Module Protection
mods Packet-level unfair-mod detection: channel registration (CONFIGURATION + PLAY), plugin messages and a cancelled anvil-echo translation probe
bot Join-rate, per-IP connection limits, burst + multi-signal risk scoring
exploit Book page/char, sign char and plugin-channel flood validation + MiniMessage injection blocking
packet Traffic rate + payload limits, version-independent via PacketEvents
inventory Click/drag rates, illegal slot detection, sub-tick burst detection
ip Whitelist/blacklist with CIDR (IPv4 + IPv6), temp blocks
login / session Reconnect spam, duplicate login, username validation, IP switching
account Accounts-per-IP alt-farm detection, PBKDF2 admin password hashing
command / spam / crash Command & chat rate limits, blocked lists, hard payload caps
Spoiler: ️ Core Engine
  • Risk engine — every detection adds weighted risk (LOW → CRITICAL); SAFE / BALANCED / AGGRESSIVE modes escalate automatically: WARN → THROTTLE → CHALLENGE → TEMP_BLOCK → KICK
  • Incident system — deduplicated history + full persistence to SQLite / MySQL
  • Privacy first — IPs stored only when enabled, always salted SHA-256, automatic retention purge
  • Performance guard — expensive checks skip automatically when TPS drops
  • 18 modules — every module has its own config file in modules/*.yml
Spoiler: Installation
  • 1. Install PacketEvents into plugins/ (required dependency)
  • 2. Drop KoraSecurity-1.0.0.jar into plugins/
  • 3. Start the server — default configs are generated automatically
  • 4. Review config.yml, database.yml and modules/*.yml
  • 5. Run /ks status to verify
Requires: Minecraft 1.21+ · Java 21+ · Paper / Purpur / Pufferfish / Folia
Spoiler: Commands
/korasecurity — aliases /ksecurity, /ks
Command Description
/ks status Plugin status summary
/ks reload Reload all configs + modules
/ks modules List all modules and state
/ks incidents Recent incidents
/ks player <name> Player risk/block info
/ks block|unblock <target> Temp-block / unblock a player or IP
/ks diagnostic Full diagnostics dump
Spoiler: Privacy
  • IPs are stored only when enabled — always as salted SHA-256 hashes
  • Discord webhook URLs and admin passwords are never logged
  • Passwords stored as PBKDF2 (120k iterations, per-server salt)
  • Automatic retention purge every 6 hours
Links: GitHub · PacketEvents
Licensed under MIT · © Ipsecuz_​

Commands

Plugin details

Read from the plugin's own plugin.yml.

Quick facts

Install steps are the general flow for this file type — How to install Minecraft Java mods & modpacks walks through it step by step.

KoraSecurity is a free Minecraft Java mod. Compatible with Minecraft 1.21, 26.1, 26.2. Downloaded 9 times (via Spigot). Download it and open it directly in the game.

Explore more