Snort mailing list archives
Virus pattern detection
From: "Miguel Koren O'Brien de Lacy" <miguelk () konsultex com br>
Date: Tue, 25 Sep 2001 22:23:16 -0300
By reading the Snort User's Manual, where I see that: it seems to be possible to use plug-ins from: Bugtraq http://www.securityfocus.com/bid/ CVE http://cve.mitre.org/cgi-bin/cvename.cgi?name= Arachnids http://www.whitehats.com/info/IDS McAffee http://vil.nai.com/vil/dispVirus.asp?virus_k= I get the impression that it's possible to 'plug-in' a virus pattern from McAfee and have Snort analyze the packets according to those patterns. Is this possible? _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- Virus pattern detection Miguel Koren O'Brien de Lacy (Sep 25)
- Re: Virus pattern detection Brian (Sep 26)