ModsJava
KoraSecurity
Kora Security — Advanced Security Framework for Paper & Folia Protect your server against exploits, packet floods, bots, rate abuse and unfair mods…
⬇ Download on SpigotKoraSecurity — Advanced Security Framework for Paper & Folia
Protect your server against exploits, packet floods, bots, rate abuse and unfair mods — fully async, Folia-safe, privacy-first.
Spoiler: ✨ Key Features
| Module | Protection |
| mods | Packet-level unfair-mod detection: channel registration (CONFIGURATION + PLAY), plugin messages and a cancelled anvil-echo translation probe |
| bot | Join-rate, per-IP connection limits, burst + multi-signal risk scoring |
| exploit | Book page/char, sign char and plugin-channel flood validation + MiniMessage injection blocking |
| packet | Traffic rate + payload limits, version-independent via PacketEvents |
| inventory | Click/drag rates, illegal slot detection, sub-tick burst detection |
| ip | Whitelist/blacklist with CIDR (IPv4 + IPv6), temp blocks |
| login / session | Reconnect spam, duplicate login, username validation, IP switching |
| account | Accounts-per-IP alt-farm detection, PBKDF2 admin password hashing |
| command / spam / crash | Command & chat rate limits, blocked lists, hard payload caps |
Spoiler: ️ Core Engine
- Risk engine — every detection adds weighted risk (LOW → CRITICAL); SAFE / BALANCED / AGGRESSIVE modes escalate automatically: WARN → THROTTLE → CHALLENGE → TEMP_BLOCK → KICK
- Incident system — deduplicated history + full persistence to SQLite / MySQL
- Privacy first — IPs stored only when enabled, always salted SHA-256, automatic retention purge
- Performance guard — expensive checks skip automatically when TPS drops
- 18 modules — every module has its own config file in modules/*.yml
Spoiler: Installation
- 1. Install PacketEvents into plugins/ (required dependency)
- 2. Drop KoraSecurity-1.0.0.jar into plugins/
- 3. Start the server — default configs are generated automatically
- 4. Review config.yml, database.yml and modules/*.yml
- 5. Run /ks status to verify
Spoiler: Commands
/korasecurity — aliases
/ksecurity,
/ks
| Command | Description |
| /ks status | Plugin status summary |
| /ks reload | Reload all configs + modules |
| /ks modules | List all modules and state |
| /ks incidents | Recent incidents |
| /ks player <name> | Player risk/block info |
| /ks block|unblock <target> | Temp-block / unblock a player or IP |
| /ks diagnostic | Full diagnostics dump |
Spoiler: Privacy
Links: GitHub · PacketEvents
- IPs are stored only when enabled — always as salted SHA-256 hashes
- Discord webhook URLs and admin passwords are never logged
- Passwords stored as PBKDF2 (120k iterations, per-server salt)
- Automatic retention purge every 6 hours
Licensed under MIT · © Ipsecuz_
Quick facts
- Edition: Minecraft Java
- File type: .jar
- Minecraft versions listed: 1.21, 26.1, 26.2
- How to install: Install the matching mod loader (Forge, Fabric or NeoForge) for your Minecraft version. → Download the .jar. → Put it in the .minecraft/mods folder and launch that loader profile.
- Where to get it: Opens on Spigot — not every file is mirrored on our own servers.
Install steps are the general flow for this file type — How to install Minecraft Java mods & modpacks walks through it step by step.
KoraSecurity is a free Minecraft Java mod. Compatible with Minecraft 1.21, 26.1, 26.2. Downloaded 9 times (via Spigot). Download it and open it directly in the game.