Snort mailing list archives

attack classification


From: "Marcin Laskowski" <cineklas () wp pl>
Date: Sat, 15 May 2004 20:52:11 +0200

Hi all

I need information about the classification of the attacks in Snort. 
Is there any parallel which says that for example XMAS Scan belongs to 
attempt-recon group? There`s no problem with extracting such information
form rule files but it`s little boring. And what about the preprocessors?
How do they match attacks with groups?

......................................
Best Regards, Marcin



e-mail:         mjl () chello pl

===========================================         
Windows jest 32 bitowym patchem na 16 bitowe GUI
bazującym na 8 bitowym systemie
napisanym dla 4 bitowego processora
przez 2 bitową firme
o 1 bitowej kompetencji.

Current thread: