From what you describe you are after, I don’t think Suricata is the correct tool for the job. Suricata works on packets read off the network, as they are on the network. However, attacks targetting Firefox are probably going to be URLs you click on, and are most likely going to be over https, which Suricata can’t see inside of.
Our CentOS guides are applicable to Fedora as well which can help you get Suricata running as a background service: Guide: Getting Started on CentOS 8 and CentOS 7