trust is easily compromised
Showing 101 - 125 of 244 RSS Feed

Files

snortalog_v2.3.0b.tgz
Posted Sep 9, 2004
Authored by Jeremy Chartier | Site jeremy.chartier.free.fr

Snortalog is a powerful Perl script that summarizes Snort logs, making it easy to view any network attacks detected by Snort. It can generate charts in HTML, PDF, and text output. It works with all versions of Snort, and can analyze logs in three formats: syslog, fast, and full snort alerts. Moreover, it is able to summarize other logs like Fw-1 (NG and 4.1), Netfilter, and IPFilter in a similar way.

Changes: Whois Database information available with -w option, Pix ICMP log detection enhancement, Smartdefense ICMP log detection enhancement, HTML output improvement, PDF output improvement, and more.
tags | tool, perl, sniffer
MD5 | fb06e8471ded78d8a7b31cdabb8b2169
openaanval-1.50-stable.tar.gz
Posted Aug 17, 2004
Site aanval.com

OpenAanval is an open-source web based Snort intrusion detection console. Currently supporting Snort and syslog, OpenAanval provides dynamic monitoring, comprehensive reporting and powerful alerting capabilities. OpenAanval supports multiple sensors of multiple intrusion detection system types. OpenAanval's web-browser interface provides live auto-updating technology which provides real time event viewing from any Internet connected web-browser.

Changes: New features of 1.50 include all new notes and incident tracking system. Additional syslog support now works with any device including cisco, sonicwall and more. New setup and installation system and much, much more.
tags | tool, web, sniffer
MD5 | 6f1ebf4effc89562f6124da3d3d42429
snort-2.2.0.tar.gz
Posted Aug 12, 2004
Authored by Martin Roesch | Site snort.org

Snort is an open source network intrusion detection system, capable of performing real-time traffic analysis and packet logging on IP networks. It can perform protocol analysis, content searching/matching and can be used to detect a variety of attacks and probes, such as buffer overflows, stealth port scans, CGI attacks, SMB probes, OS fingerprinting attempts, and much more. Includes real time alerting, incorporating alerting mechanisms for syslog, a user specified file, a UNIX socket, or WinPopup messages via smbclient.

Changes: Bug fixes.
tags | tool, overflow, cgi, sniffer, protocol
systems | unix
MD5 | 6194278217e4e3f733b046256a31f0e6
netsquid.tar.gz
Posted Jul 14, 2004
Authored by msconzo | Site security.tamu.edu

NetSQUID is a Perl script that sits inbetween Snort and IPTables. It looks at the alerts generated by Snort, then automatically creates an IPTables firewall entry to block problematic hosts (such as those infected by viruses). Web traffic is redirected to a webserver that can alert the user to the infection. The host is automatically unblocked after a specified time (hopefully reducing calls to your NOC). It can also send out DHCP address requests, so rogue DHCP servers can be detected by Snort.

Changes: Bug fixes and code cleanup.
tags | tool, web, perl, sniffer
MD5 | 19e7aae0da3a00b4c06694f6f8809919
FLoP-1.3.0.tar.gz
Posted Jul 8, 2004
Authored by DG | Site geschke-online.de

FLoP is utility designed to gather alerts with a payload from distributed Snort sensors at a central server, and to store them in a database. Both PostgreSQL and MySQL are currently supported. High priority alerts may be sent out via e-mail.

Changes: Feature enhancements and bug fixes.
tags | tool, sniffer
MD5 | 012d38e1efe8ea51d1c2f08790bccaf5
placid-2.0.2.tar.gz
Posted Jun 18, 2004
Authored by Phillip Deneault | Site speakeasy.wpi.edu

Placid is a Web-based frontend for Snort that uses MySQL. It supports searching, sorting, and graphing of events, and was designed for speed and to have little overhead.

tags | tool, web, sniffer
MD5 | 7772b3d934d1fb3570c05d335ede895d
snort-2.1.3.tar.gz
Posted Jun 3, 2004
Authored by Martin Roesch | Site snort.org

Snort is an open source network intrusion detection system, capable of performing real-time traffic analysis and packet logging on IP networks. It can perform protocol analysis, content searching/matching and can be used to detect a variety of attacks and probes, such as buffer overflows, stealth port scans, CGI attacks, SMB probes, OS fingerprinting attempts, and much more. Includes real time alerting, incorporating alerting mechanisms for syslog, a user specified file, a UNIX socket, or WinPopup messages via smbclient.

Changes: Bug fixes.
tags | tool, overflow, cgi, sniffer, protocol
systems | unix
MD5 | 76a538d27c23d51dbed43b04c06114e1
FLoP-1.2.3.tar.gz
Posted May 29, 2004
Authored by DG | Site geschke-online.de

FLoP is utility designed to gather alerts with a payload from distributed Snort sensors at a central server, and to store them in a database. Both PostgreSQL and MySQL are currently supported. High priority alerts may be sent out via e-mail.

tags | tool, sniffer
MD5 | cc5a7a0a07131d462b94458ca4521724
snort2pf-3.3.tar.gz
Posted May 25, 2004
Authored by Stephan Schmieder | Site bsd-security.org

Snort2Pf is a small Perl daemon which greps Snort's alertfile and blocks the bad hosts for a given amount of time using pfctl.

Changes: Bug fixes.
tags | tool, perl, sniffer
MD5 | bd1c5b046fbebc2009da71f4cc6ed39d
openaanval-1.48-stable.tar.gz
Posted May 20, 2004
Site aanval.com

OpenAanval is an open-source web based Snort intrusion detection console. Currently supporting Snort and syslog, OpenAanval provides dynamic monitoring, comprehensive reporting and powerful alerting capabilities. OpenAanval supports multiple sensors of multiple intrusion detection system types. OpenAanval's web-browser interface provides live auto-updating technology which provides real time event viewing from any Internet connected web-browser.

Changes: Miscellaneous bug fixes including a client side memory leak. In addition various new features have been added and streamlined.
tags | tool, web, sniffer
MD5 | 43453b81db08a3373a0e55b859d5e139
oinkmaster-1.0.tar.gz
Posted May 18, 2004
Authored by Andreas Oestling | Site nitzer.dhs.org

Oinkmaster is simple Perl script released under the BSD license to help update and manage Snort 2.0+ rules and to comment out the unwanted ones after each update. It will report what has changed since the last update, offering good change control.

Changes: Feature enhancements, bug fixes, and many other improvements.
tags | tool, perl, sniffer
systems | bsd
MD5 | 1140fb5484944691268579ca7fc83518
mbd.tar.gz
Posted May 17, 2004
Authored by msconzo | Site security.tamu.edu

NetSQUID is a Perl script that sits inbetween Snort and IPTables. It looks at the alerts generated by Snort, then automatically creates an IPTables firewall entry to block problematic hosts (such as those infected by viruses). Web traffic is redirected to a webserver that can alert the user to the infection. The host is automatically unblocked after a specified time (hopefully reducing calls to your NOC). It can also send out DHCP address requests, so rogue DHCP servers can be detected by Snort.

tags | tool, web, perl, sniffer
MD5 | ef5f44b783aab6c76b7c6289cdebcac3
openaanval-1.47-stable.tar.gz
Posted May 9, 2004
Site aanval.com

OpenAanval is an open-source web based Snort intrusion detection console. Currently supporting Snort and syslog, OpenAanval provides dynamic monitoring, comprehensive reporting and powerful alerting capabilities. OpenAanval supports multiple sensors of multiple intrusion detection system types. OpenAanval's web-browser interface provides live auto-updating technology which provides real time event viewing from any Internet connected web-browser.

Changes: This release includes a few major bug fixes and several minor new features.
tags | tool, web, sniffer
MD5 | 83bc704655e4578d092671b549fcf5ea
snortalog_v2.2.1.tgz
Posted May 9, 2004
Authored by Jeremy Chartier | Site jeremy.chartier.free.fr

Snortalog is a powerful Perl script that summarizes Snort logs, making it easy to view any network attacks detected by Snort. It can generate charts in HTML, PDF, and text output. It works with all versions of Snort, and can analyze logs in three formats: syslog, fast, and full snort alerts. Moreover, it is able to summarize other logs like Fw-1 (NG and 4.1), Netfilter, and IPFilter in a similar way.

Changes: New HTML output, TEXT output improvement, GUI improvement, bug fixes.
tags | tool, perl, sniffer
MD5 | 123cb4ec30b782cfe541c6edc25b7642
openaanval-1.46-stable.tar.gz
Posted May 5, 2004
Site aanval.com

OpenAanval is an open-source web based Snort intrusion detection console. Currently supporting Snort and syslog, OpenAanval provides dynamic monitoring, comprehensive reporting and powerful alerting capabilities. OpenAanval supports multiple sensors of multiple intrusion detection system types. OpenAanval's web-browser interface provides live auto-updating technology which provides real time event viewing from any Internet connected web-browser.

Changes: 1.46 includes the new OAD (Offender Analysis Database) which links OpenAanval consoles from around the world together to share offender details and statistics.
tags | tool, web, sniffer
MD5 | 8cdee7b1ed5cffb688bb977ea453c6ac
sass.snort.txt
Posted May 4, 2004
Authored by Martin Overton

Snort signatures that identify the new Sass worm that is propagating.

tags | tool, worm, sniffer
MD5 | 65392ba74c0fbbd684793905ac32c32d
FLoP-1.2.1.tar.gz
Posted Apr 22, 2004
Authored by DG | Site geschke-online.de

FLoP is utility designed to gather alerts with a payload from distributed Snort sensors at a central server, and to store them in a database. Both PostgreSQL and MySQL are currently supported. High priority alerts may be sent out via e-mail.

tags | tool, sniffer
MD5 | b920e0a575df8a4a141744e694ff852d
cctde-0.2.tar.gz
Posted Apr 19, 2004
Authored by Simon Castro | Site gray-world.net

CCTDE is designed as an analysis backend for the Snort NIDS tool and focuses on providing a way to register and disclose information leading to the detection of unauthorized tunnels and covert channels.

Changes: First public release.
tags | tool, sniffer
MD5 | a0fd7e48315d3e38b1c6a3fd689fb47a
snort2pf-3.2.tar.gz
Posted Apr 10, 2004
Authored by Stephan Schmieder | Site bsd-security.org

Snort2Pf is a small Perl daemon which greps Snort's alertfile and blocks the bad hosts for a given amount of time using pfctl.

Changes: Improved portscan detection, various bug fixes.
tags | tool, perl, sniffer
MD5 | 3e8d9efbb52be5cc66c33c87de9a740d
sntm-1.1.2.tgz
Posted Apr 8, 2004
Authored by Min Hsu | Site sntm.sourceforge.net

sntm is a Qt based GUI snort monitor. Currently, it is capable of monitoring multiple snort sensors in a centralized monitor screen. Each snort sensor creates a SSL encrypted communication thread to connect to the monitored server and each communication channel has its own certificate and private key.

tags | tool, sniffer
MD5 | 21f97dda1395bd2c6b9c5a72b70a2343
FLoP-1.2.0.tar.gz
Posted Apr 3, 2004
Authored by DG | Site geschke-online.de

FLoP is utility designed to gather alerts with a payload from distributed Snort sensors at a central server, and to store them in a database. Both PostgreSQL and MySQL are currently supported. High priority alerts may be sent out via e-mail.

tags | tool, sniffer
MD5 | 76a3e5a3bc4d9c95c53631cde6585956
snort2pf-3.1.tar.gz
Posted Mar 30, 2004
Authored by Stephan Schmieder | Site bsd-security.org

Snort2Pf is a small Perl daemon which greps Snort's alertfile and blocks the bad hosts for a given amount of time using pfctl.

tags | tool, perl, sniffer
MD5 | ca1e2c7b3878570256b93f2f405f6f1f
snortalog_v2.2.RC2.tgz
Posted Mar 1, 2004
Authored by Jeremy Chartier | Site jeremy.chartier.free.fr

Snortalog is a powerful Perl script that summarizes Snort logs, making it easy to view any network attacks detected by Snort. It can generate charts in HTML, PDF, and text output. It works with all versions of Snort, and can analyze logs in three formats: syslog, fast, and full snort alerts. Moreover, it is able to summarize other logs like Fw-1 (NG and 4.1), Netfilter, and IPFilter in a similar way.

tags | tool, perl, sniffer
MD5 | b9c0d6a4d1ecfe27848b857da1c4e3a4
snort-2.1.1.tar.gz
Posted Feb 26, 2004
Authored by Martin Roesch | Site snort.org

Snort is an open source network intrusion detection system, capable of performing real-time traffic analysis and packet logging on IP networks. It can perform protocol analysis, content searching/matching and can be used to detect a variety of attacks and probes, such as buffer overflows, stealth port scans, CGI attacks, SMB probes, OS fingerprinting attempts, and much more. Includes real time alerting, incorporating alerting mechanisms for syslog, a user specified file, a UNIX socket, or WinPopup messages via smbclient.

Changes: Fixed bugs and added signatures.
tags | tool, overflow, cgi, sniffer, protocol
systems | unix
MD5 | f53ce230616c1f6aafedf546a7cc0f0f
cctde-0.1.tar.gz
Posted Feb 6, 2004
Authored by Simon Castro | Site gray-world.net

CCTDE is designed as an analysis backend for the Snort NIDS tool and focuses on providing a way to register and disclose information leading to the detection of unauthorized tunnels and covert channels.

tags | tool, sniffer
MD5 | 0ee9ae61c16fdaa0acb6d139485636bc
Page 5 of 10
Back34567Next

Top Authors In Last 30 Days

packet storm

© 2012 Packet Storm. All rights reserved.

close