Snort: by date

478 messages starting Oct 02 16 and ending Dec 31 16
Date index | Thread index | Author index


Sunday, 02 October

Injected Eitest Script el cabezon

Monday, 03 October

Re: Packet Performance Monitor Mike Cox
Re: Packet Performance Monitor Russ
Re: Injected Eitest Script Geoffrey Serrao
Re: Injected Eitest Script Joshua Williams
Re: Injected Eitest Script el cabezon

Tuesday, 04 October

Snort Subscriber Rules Update 2016-09-30 Research
Snort Subscriber Rules Update 2016-10-04 Research
Re: Injected Eitest Script el cabezon

Wednesday, 05 October

ERROR: Can't initialize DAQ pcap (-1) - unknown file format kamil kapturkiewicz
request: enable nfq while building daq RPMS Marcin Dulak
request: drop versioning of /usr/lib64/snort-2.9.8.3_dynamicpreprocessor /usr/lib64/snort-2.9.8.3_dynamicengine directories in snort RPMS Marcin Dulak
Snort vs Proofpoint Emerging Threats Shawn Maggard
Odp: ERROR: Can't initialize DAQ pcap (-1) - unknown file format kamil kapturkiewicz
Re: request: enable nfq while building daq RPMS Joel Esler (jesler)
Re: ERROR: Can't initialize DAQ pcap (-1) - unknown file format Kamil Kapturkiewicz
Re: Snort vs Proofpoint Emerging Threats wkitty42
Re: Snort vs Proofpoint Emerging Threats Joel Esler (jesler)
Re: Snort vs Proofpoint Emerging Threats wkitty42

Thursday, 06 October

Snort Subscriber Rules Update 2016-10-06 Research
Re: Snort vs Proofpoint Emerging Threats Shawn Maggard

Friday, 07 October

Re: Snort vs Proofpoint Emerging Threats Dave Killion
Doubt about rule at Snort Jader Friderichs Vieira

Tuesday, 11 October

Razorback a bv
Snort Subscriber Rules Update 2016-10-11 Research
Snort Subscriber Rules Update 2016-10-11 Research
Re: snort rules to track Potential Criticality windows event Arun Saini

Wednesday, 12 October

Snort IPS with one NIC Dave Corsello
IPv6 ASCII Logging Error in Windows Randy Chow

Thursday, 13 October

Snort Subscriber Rules Update 2016-10-13 Research
Incomplete Header with HTTP Inspect Original Client IP enabled Daniel Garczek
snort inline mode and bridge Vincent Li
Re: snort inline mode and bridge Y M

Friday, 14 October

error Savan Patel
Re: error wkitty42
Re: error wkitty42
Re: error Joel Esler (jesler)
snort rules to track Potential Criticality windows event Arun Saini
Re: snort inline mode and bridge Vincent Li

Saturday, 15 October

alerting to unixsocket Jonas Sell
Missing members in struct _daq_modflow when compiling snort3 Joman Chu

Sunday, 16 October

Re: Missing members in struct _daq_modflow when compiling snort3 Russ
Re: Missing members in struct _daq_modflow when compiling snort3 Joman Chu

Monday, 17 October

Re: Snort IPS with one NIC Dave Corsello

Tuesday, 18 October

Re: IPv6 ASCII Logging Error in Windows Seshaiah Erugu (serugu)
Snort Subscriber Rules Update 2016-10-18 Research
Long over due James Lay
Re: Long over due Y M
Re: Long over due James Lay
Re: IPv6 ASCII Logging Error in Windows Randy Chow
Re: IPv6 ASCII Logging Error in Windows Glenn Geller
Re: IPv6 ASCII Logging Error in Windows Randy Chow
Re: IPv6 ASCII Logging Error in Windows Glenn Geller

Wednesday, 19 October

Questions on Snort++ James Lay
Snort inline problem mostafa ammar
Re: Snort inline problem James Lay
Snort rule policy Jeff Feng
Problem with latest snort.conf file Michael Steele
SQLi Injection Attempts Stanwyck, Carraig - ASOC, Kansas City, MO
Re: Problem with latest snort.conf file Seshaiah Erugu (serugu)

Thursday, 20 October

snort inline problem mostafa ammar
Re: snort inline problem mostafa ammar
Rule 3:30881 James Lay
Re: snort inline problem James Lay
Re: Snort IPS with one NIC James Lay
Re: Problem with latest snort.conf file Markus Thiemann
(no subject) Frederic Lubrano
Re: (no subject) James Lay
Re: Problem with latest snort.conf file Joel Esler (jesler)
Re: (no subject) Frederic Lubrano
Re: (no subject) James Lay
Re: (no subject) Frederic Lubrano
PEN test tool for Snort Jeff Feng
Re: (no subject) James Lay
Snort Subscriber Rules Update 2016-10-20 Research
Re: PEN test tool for Snort Thomas Mullins
Re: Problem with latest snort.conf file Michael Steele
Re: Snort inline problem mostafa ammar
Re: Rule 3:30881 Jeremy Hoel
Windows decompression of SWF and PDF errors Michael Steele

Friday, 21 October

Re: Windows decompression of SWF and PDF errors Geoffrey Serrao
Re: Questions on Snort++ Russ
Re: Questions on Snort++ James Lay
preprocessor http_inspect_server: - Faulting in Windows Michael Steele
Re: Rule 3:30881 James Lay

Saturday, 22 October

Using snort-2.9.8.3.How to connect mariadb with a path like the following ? ??????
Re: Using snort-2.9.8.3.How to connect mariadb with a path like the following ? wkitty42
Re: Using snort-2.9.8.3.How to connect mariadb with a path like the following ? wkitty42
Offer a new sig for detecting TrendMicro Interscan Web Security Virtual Appliance User-Agent ShellShock rmkml

Monday, 24 October

Snort Alert [gid:sid:revision] instead of signature name Barnyard2 Joshua Roback
Re: Snort Alert [gid:sid:revision] instead of signature name Barnyard2 wkitty42
Re: SQLi Injection Attempts Joshua Williams
Snort IDS Murali Krishna
Can Snort notify a user program when it finishes processing a packet? Chang Liu

Tuesday, 25 October

Re: Snort IDS Dave Osbourne
Re: Can Snort notify a user program when it finishes processing a packet? wkitty42
Re: Can Snort notify a user program when it finishes processing a packet? Chang Liu
Re: Snort IDS Jim Campbell
Re: Can Snort notify a user program when it finishes processing a packet? Joel Esler (jesler)
Re: Snort IDS Dave Osbourne
Re: Snort IDS Jim Campbell
Re: Can Snort notify a user program when it finishes processing a packet? Jim Campbell
Snort Subscriber Rules Update 2016-10-25 Research
Re: snort inline mode and bridge Vincent Li
Re: snort inline mode and bridge Russ
Re: Can Snort notify a user program when it finishes processing a packet? Chang Liu
Can Snort notify a user program when it finishes processing a packet? Chang Liu
Snort Subscriber Rules Update 2016-10-25 Research

Wednesday, 26 October

Re: Can Snort notify a user program when it finishes processing a packet? Russ
Windows broken on snort.conf Michael Steele
Re: Windows broken on snort.conf Seshaiah Erugu (serugu)
Re: Windows broken on snort.conf Russ
Re: Windows broken on snort.conf Seshaiah Erugu (serugu)
Re: snort inline mode and bridge Vincent Li
Re: Windows broken on snort.conf Michael Steele
Re: Windows broken on snort.conf Steve Sturges (ststurge)

Thursday, 27 October

Re: Windows broken on snort.conf Russ
Re: snort inline mode and bridge Russ
Snort drops large HTTP packets Maxim
Re: Snort drops large HTTP packets Bhargava Jandhyala (bjandhya)
Re: snort inline mode and bridge Vincent Li
Snort Subscriber Rules Update 2016-10-27 Research

Friday, 28 October

Snort IPS with one NIC revisited James Lay
Re: Snort inline problem mostafa ammar
snorby update ARUN LAL

Saturday, 29 October

Re: [Snort-sigs] snorby update Balasubramaniam Natarajan
Re: [Snort-sigs] snorby update ARUN LAL
Re: Snort inline problem James Lay
Re: Snort IPS with one NIC revisited Dave Corsello

Sunday, 30 October

Offer a new sig for detecting LibTIFF BadFaxLines tag count possible RCE rmkml

Monday, 31 October

[HITB-Announce] HITB2017AMS CFP Hafez Kamal

Tuesday, 01 November

Snort++ build 217 is now available on snort.org! Snort Releases
Seg fault with latest pf_ring git James Lay
Re: Seg fault with latest pf_ring git Y M
Re: snort inline mode and bridge Y M
Snort Subscriber Rules Update 2016-11-01 Research
Re: snort inline mode and bridge Vincent Li
Re: snort inline mode and bridge Y M
Re: Seg fault with latest pf_ring git James Lay
Re: Seg fault with latest pf_ring git Y M
Re: Seg fault with latest pf_ring git James Lay
Re: Seg fault with latest pf_ring git Y M
Re: Seg fault with latest pf_ring git James Lay
Re: Seg fault with latest pf_ring git Michael Altizer
Re: Seg fault with latest pf_ring git James Lay
Re: Seg fault with latest pf_ring git James Lay
Re: Seg fault with latest pf_ring git James Lay

Wednesday, 02 November

How to detect http response body Maxim
Re: How to detect http response body Y M
Re: Seg fault with latest pf_ring git Michael Altizer
Re: Seg fault with latest pf_ring git James Lay
Re: How to detect http response body Maxim
Re: How to detect http response body Y M
Snort cannot detect HTTP OPTIONS payload Maxim

Thursday, 03 November

Snort Subscriber Rules Update 2016-11-03 Research
Snort OS Fingerprint Scan Detectino yasir al-ibrahem

Friday, 04 November

Custom dynamic preprocessor - How to evaluate custom rules against data from custom dissection? Jan Hermes
Re: Snort OS Fingerprint Scan Detectino wkitty42
Re: Snort OS Fingerprint Scan Detectino Y M
daq 2.0.6 version info inconsistency Jingning Ji
Re: Snort OS Fingerprint Scan Detectino yasir al-ibrahem
Re: daq 2.0.6 version info inconsistency Markus Lude

Saturday, 05 November

Re: daq 2.0.6 version info inconsistency Michael Altizer
Re: Snort OS Fingerprint Scan Detectino Marcin Dulak

Sunday, 06 November

New sig for detecting possible Hancitor maldoc bypass via PNG rmkml
pfSense and Snort Bryan

Monday, 07 November

Re: New sig for detecting possible Hancitor maldoc bypass via PNG Joshua Williams
Something is wrong with snort logging? fatema bannatwala
IP Packet Size SiNA

Tuesday, 08 November

Re: Something is wrong with snort logging? Y M
Re: Something is wrong with snort logging? fatema bannatwala
Re: Something is wrong with snort logging? fatema bannatwala
Pulledpork 0.7.2 released Michael Shirk
Re: Pulledpork 0.7.2 released Marcin Dulak
Snort Subscriber Rules Update 2016-11-08 Research
Re: Pulledpork 0.7.2 released Michael Shirk
Re: Snort OS Fingerprint Scan Detectino yasir al-ibrahem
Snort Subscriber Rules Update 2016-11-08 Research

Wednesday, 09 November

Re: Malicious Chrome Extensions Stanwyck, Carraig - ASOC, Kansas City, MO
Re: Snort OS Fingerprint Scan Detectino Russ
Local rules with same sids and snort works! fatema bannatwala
Re: Local rules with same sids and snort works! Joel Esler (jesler)
Re: Local rules with same sids and snort works! fatema bannatwala
Re: Local rules with same sids and snort works! Joel Esler (jesler)
Re: Local rules with same sids and snort works! fatema bannatwala
Re: Local rules with same sids and snort works! Joel Esler (jesler)
Re: Local rules with same sids and snort works! fatema bannatwala

Thursday, 10 November

Snort Subscriber Rules Update 2016-11-10 Research

Friday, 11 November

Problem with Snort IDS Marcio Demetrio Bacci

Saturday, 12 November

Re: Problem with Snort IDS Al Lewis (allewi)
daq-2.2 with snort-2? Marcin Dulak
Re: daq-2.2 with snort-2? Markus Lude
Re: daq-2.2 with snort-2? Marcin Dulak
how to make daq drop rpath? Marcin Dulak

Sunday, 13 November

Re: daq-2.2 with snort-2? Al Lewis (allewi)
Re: daq-2.2 with snort-2? Marcin Dulak
Re: daq-2.2 with snort-2? Michael Altizer
Re: how to make daq drop rpath? Michael Altizer

Monday, 14 November

Re: Snort 2.9.9 Beta Now Available Cloherty, Sean E
Re: Snort 2.9.9 Beta Now Available Joel Esler (jesler)
New sig for detecting a Zip file contains directory traversal rmkml
IDS Rules to detect The Blacknurse Attack - ICMP DOS Lenny Hansson
Re: IDS Rules to detect The Blacknurse Attack - ICMP DOS Joshua Williams
Re: New sig for detecting a Zip file contains directory traversal Joshua Williams

Tuesday, 15 November

include local.rules in snort.rules shekhar $on!
Re: include local.rules in snort.rules Alberto ----
Re: how to make daq drop rpath? Marcin Dulak
Can I get removed from the mailing lists? Chris Sweeney
Snort Subscriber Rules Update 2016-11-15 Research
Re: Snort 2.9.9 Beta Now Available Cloherty, Sean E

Wednesday, 16 November

getting db error while running barnyard. shekhar $on!
signature email list removal BURNS, JOHN A CTR USAF AFSPC 2 SOPS/MAO
Re: signature email list removal Alex McDonnell
Central Server Eric J. Taylor

Thursday, 17 November

Sig writing help Alex Cermak
How dose suricata load snort dynamic rules (so_rules)? 刘强
Re: Central Server Brent Bice
Re: Sig writing help Al Lewis (allewi)
Re: Sig writing help Al Lewis (allewi)
Re: How dose suricata load snort dynamic rules (so_rules)? Joel Esler (jesler)
Mr. Turritopsis Dohrnii Teo En Ming (Zhang Enming) is Looking for Information Technology-related Job Opportunities World Wide Turritopsis Dohrnii Teo
Snort Subscriber Rules Update 2016-11-17 Research
BLACKLIST DNS request for known malware domain 143biz.cc.md-14.webhostbox.net Travis McWaters
Snort-2.9.9 ETA? Joshua Kinard

Friday, 18 November

Sig_reference table issue shekhar $on!
Re: Snort-2.9.9 ETA? Joel Esler (jesler)
Re: Sig_reference table issue shekhar $on!
Re: How dose suricata load snort dynamic rules (so_rules)? Joel Esler (jesler)

Saturday, 19 November

Doubt about Snort as IPS Marcio Demetrio Bacci
Snort Configuration ERROR Amal Saeed
Re: Snort Configuration ERROR Michael Steele
Re: Snort Configuration ERROR Al Lewis (allewi)
Re: Snort Configuration ERROR Amal Saeed

Sunday, 20 November

Re: Sig writing help Alex Cermak
Re: Sig_reference table issue shekhar $on!

Monday, 21 November

Fwd: error in sort configuration Kulamani Sethi
Re: Fwd: error in sort configuration Michael Steele
Re: Sig_reference table issue Joel Esler (jesler)
Re: How dose suricata load snort dynamic rules (so_rules)? Joel Esler (jesler)

Tuesday, 22 November

Re: Fwd: error in sort configuration Michael Steele
Snort Blog: Reporting False Positives with Snort.org Joel Esler (jesler)
Re: How dose suricata load snort dynamic rules (so_rules)? 刘强
Re: How dose suricata load snort dynamic rules (so_rules)? 刘强
Snort cann't check LOIC 刘强
Re: Snort cann't check LOIC lists
Re: Snort cann't check LOIC lists
Snort Subscriber Rules Update 2016-11-22 Research
Re: Snort cann't check LOIC Joel Esler (jesler)
New sig for detecting TP-Link TDDP SET_CONFIG type buffer overflow rmkml
Re: New sig for detecting TP-Link TDDP SET_CONFIG type buffer overflow Joshua Williams
Post request to the snort user list MassTech250

Wednesday, 23 November

Snort Subscriber Rules Update 2016-11-23 Research

Thursday, 24 November

Re: Snort IPS with one NIC revisited Maxim
tag:session problem Maxim

Friday, 25 November

Re: tag:session problem Al Lewis (allewi)
Trying to use snort with TALOS-2016-0219 Yuri Niyazov

Saturday, 26 November

snorby database size ARUN LAL
sql query to database Nouar Ismail
logging to a csv file Nouar Ismail

Sunday, 27 November

Re: snorby database size Praveen Kumar

Monday, 28 November

BASE is not getting alert, Arun Saini
Re: Trying to use snort with TALOS-2016-0219 Joel Esler (jesler)
Mailing list etiquette was:[Snort-sigs] snorby database size Joel Esler (jesler)
Re: Snort Inline w/ NFQ doesn't work after reboot J Green
Re: Trying to use snort with TALOS-2016-0219 Patrick Mullen
Re: Trying to use snort with TALOS-2016-0219 Yuri Niyazov
BASE is not getting alert, Arun Saini

Tuesday, 29 November

Re: Snort Inline w/ NFQ doesn't work after reboot James Lay
Re: Snort Inline w/ NFQ doesn't work after reboot J Green
Re: Snort Inline w/ NFQ doesn't work after reboot James Lay
Re: Snort Inline w/ NFQ doesn't work after reboot J Green
Re: Snort Inline w/ NFQ doesn't work after reboot James Lay
Re: Snort Inline w/ NFQ doesn't work after reboot J Green
Re: Trying to use snort with TALOS-2016-0219 Patrick Mullen
Re: Snort Inline w/ NFQ doesn't work after reboot James Lay
Re: Snort Inline w/ NFQ doesn't work after reboot J Green
Re: Snort Inline w/ NFQ doesn't work after reboot J Green
Re: Snort Inline w/ NFQ doesn't work after reboot James Lay
Re: Snort Inline w/ NFQ doesn't work after reboot J Green
Re: Trying to use snort with TALOS-2016-0219 Joel Esler (jesler)
Snort Subscriber Rules Update 2016-11-29 Research
Re: Snort Inline w/ NFQ doesn't work after reboot J Green

Wednesday, 30 November

Re: Snort Inline w/ NFQ doesn't work after reboot James Lay
ERROR: Can't initialize DAQ pcap (-1) - truncated dump file; tried to read 4 file header bytes, only got 0 Scott Thomas
Re: ERROR: Can't initialize DAQ pcap (-1) - truncated dump file; tried to read 4 file header bytes, only got 0 Al Lewis (allewi)
Re: ERROR: Can't initialize DAQ pcap (-1) - truncated dump file; tried to read 4 file header bytes, only got 0 Scott Thomas
Re: ERROR: Can't initialize DAQ pcap (-1) - truncated dump file; tried to read 4 file header bytes, only got 0 Al Lewis (allewi)
Re: ERROR: Can't initialize DAQ pcap (-1) - truncated dump file; tried to read 4 file header bytes, only got 0 Scott Thomas
Re: ERROR: Can't initialize DAQ pcap (-1) - truncated dump file; tried to read 4 file header bytes, only got 0 Al Lewis (allewi)
Re: ERROR: Can't initialize DAQ pcap (-1) - truncated dump file; tried to read 4 file header bytes, only got 0 Al Lewis (allewi)
Re: ERROR: Can't initialize DAQ pcap (-1) - truncated dump file; tried to read 4 file header bytes, only got 0 Scott Thomas
ERROR: can't find nfq DAQ Amal Saeed
Re: ERROR: can't find nfq DAQ Al Lewis (allewi)
Re: ERROR: can't find nfq DAQ Al Lewis (allewi)
Re: ERROR: can't find nfq DAQ Amal Saeed
Re: ERROR: can't find nfq DAQ Amal Saeed
Re: ERROR: can't find nfq DAQ Al Lewis (allewi)
Snort Subscriber Rules Update 2016-11-30 Research
Re: ERROR: can't find nfq DAQ Amal Saeed
Re: ERROR: can't find nfq DAQ Marcin Dulak
Not able to compile pfring-daq-module in PF_RING 6.4.1 fatema bannatwala
Re: Not able to compile pfring-daq-module in PF_RING 6.4.1 Marcin Dulak
Re: Not able to compile pfring-daq-module in PF_RING 6.4.1 fatema bannatwala
Re: Not able to compile pfring-daq-module in PF_RING 6.4.1 Marcin Dulak
Re: Not able to compile pfring-daq-module in PF_RING 6.4.1 fatema bannatwala
Re: BASE is not getting alert, Arun Saini
u2ratmslayer () yahoo com mx Omar Vazquez

Thursday, 01 December

Re: u2ratmslayer () yahoo com mx Joel Esler (jesler)
Re: ERROR: can't find nfq DAQ Amal Saeed
Re: ERROR: can't find nfq DAQ Amal Saeed
Rules question Atanas Hambardzhiev
Re: ERROR: can't find nfq DAQ wkitty42
Re: Rules question Alex McDonnell
Snort.Conf line 285 Justin Pederson
Any Good Books out there? Justin Pederson
Re: Any Good Books out there? Al Lewis (allewi)
Re: Any Good Books out there? Al Lewis (allewi)
Re: Snort.Conf line 285 wkitty42
Re: Any Good Books out there? Joel Esler (jesler)
Re: Any Good Books out there? Luke Ager
Re: Any Good Books out there? Joel Esler (jesler)
Re: Any Good Books out there? Justin Pederson
Snort Subscriber Rules Update 2016-12-01 Research
Re: Any Good Books out there? Marcin Dulak
Re: Any Good Books out there? Marcin Dulak
Re: Any Good Books out there? Joel Esler (jesler)
Re: Any Good Books out there? Justin Pederson
Re: Any Good Books out there? wkitty42
Re: Rules question neil ramsarran
Re: Rules question neil ramsarran
Re: Rules question lists
Re: Rules question lists
Re: Rules question neil ramsarran
Re: Rules question lists
Re: Rules question Chris Pyles

Friday, 02 December

ERROR size 1240 != 864 Gurram Vinay
Re: ERROR size 1240 != 864 Y M
Re: ERROR size 1240 != 864 Joel Esler (jesler)
Re: ERROR size 1240 != 864 Y M
Re: ERROR size 1240 != 864 Joel Esler (jesler)
Re: Rules question Wei Chea Ang
Visbot sig James Lay
snort and snort-rules/ET alerts Keith Pachulski
Re: snort and snort-rules/ET alerts Joel Esler (jesler)
Re: snort and snort-rules/ET alerts Keith Pachulski
Re: snort and snort-rules/ET alerts Y M
Re: snort and snort-rules/ET alerts Joel Esler (jesler)
New sig for detecting NTPd DoS rmkml
Re: snort and snort-rules/ET alerts Keith Pachulski
Re: snort and snort-rules/ET alerts Y M
Re: snort and snort-rules/ET alerts Y M
Re: snort and snort-rules/ET alerts Michael Shirk
Re: snort and snort-rules/ET alerts Keith Pachulski
Re: snort and snort-rules/ET alerts James Lay
Re: New sig for detecting NTPd DoS Joshua Williams
Re: Visbot sig Joshua Williams
Re: snort and snort-rules/ET alerts Joel Esler (jesler)
Re: Snort-users Digest, Vol 127, Issue 7 金欣
Re: Snort-users Digest, Vol 127, Issue 7 Joel Esler (jesler)
Re: snort and snort-rules/ET alerts Marcin Dulak
Re: snort and snort-rules/ET alerts Marcin Dulak

Saturday, 03 December

Re: [Snort-users] snort and snort-rules/ET alerts Michael Steele
Re: [Snort-users] snort and snort-rules/ET alerts Michael Steele
Re: [Snort-users] snort and snort-rules/ET alerts Joel Esler (jesler)
Re: [Snort-users] snort and snort-rules/ET alerts Michael Shirk
Re: [Snort-users] snort and snort-rules/ET alerts Joel Esler (jesler)
Re: [Snort-users] snort and snort-rules/ET alerts Michael Steele
Re: [Snort-users] snort and snort-rules/ET alerts Joel Esler (jesler)

Sunday, 04 December

Re: [Snort-users] snort and snort-rules/ET alerts Joel Esler (jesler)
Re: Rules question neil ramsarran
Re: Rules question Joel Esler (jesler)

Tuesday, 06 December

Port Mirroring Justin Pederson
Re: Port Mirroring Michael Steele
Re: Port Mirroring Russ
Snort Subscriber Rules Update 2016-12-06 Research
Understanding how to debug snort.config Jared F
Re: Understanding how to debug snort.config wkitty42
Re: Understanding how to debug snort.config Russ
Re: Understanding how to debug snort.config Michael Steele
Re: Port Mirroring Michael Steele
Re: Port Mirroring Ryan Shuck
Re: Port Mirroring Scott Link
Re: Port Mirroring Bruce Ferrell

Wednesday, 07 December

snort rules for DNS ddos attack(dns amplification attack) Gurram Vinay
subscribe Michael Clark
Possible Cerber False Negative Kevin Ross
Re: Port Mirroring Justin Pederson
Re: subscribe Joel Esler (jesler)
Re: Understanding how to debug snort.config Russ

Thursday, 08 December

Snort Subscriber Rules Update 2016-12-08 Research
Re: ERROR: can't find nfq DAQ Amal Saeed
Reply NDRIAMALAZA Jeanny Cynthia
header intact dileep kumar

Friday, 09 December

reading folder of PCAP files Ikenna Chiadikaobi
Re: reading folder of PCAP files Al Lewis (allewi)
solving some warning Ikenna Chiadikaobi

Monday, 12 December

Re: solving some warning Joel Esler (jesler)
Re: reading folder of PCAP files Joel Esler (jesler)
snort snapshot rules koppfabi
Fwd: snort ips M C
Re: snort snapshot rules Joel Esler (jesler)
CobaltStrike certificate joshua burgess
Re: CobaltStrike certificate rmkml
Re: CobaltStrike certificate Joel Esler (jesler)
Netgear Arbitrary Command Execution sig James Lay
Re: CobaltStrike certificate wkitty42
Re: Netgear Arbitrary Command Execution sig Joshua Williams
Re: [Emerging-Sigs] Netgear Arbitrary Command Execution sig James Lay
TCP Urgent data causes HTTPInspect to fail and prevents PAF to flush hey

Tuesday, 13 December

Re: TCP Urgent data causes HTTPInspect to fail and prevents PAF to flush Russ
IPS snort generating (DUP) packets mehdi chourib
Snort Subscriber Rules Update 2016-12-13 Research
Snort Subscriber Rules Update 2016-12-13 Research

Wednesday, 14 December

snort2lua error koppfabi
Re: snort2lua error Russ
Snort++ crashes abruptly João Soares
Re: Snort++ crashes abruptly Russ
Noction IRP Probe sig James Lay
Re: Noction IRP Probe sig Joshua Williams
Re: Snort++ crashes abruptly João Soares
Re: [Emerging-Sigs] Noction IRP Probe sig Will Metcalf
Re: Snort++ crashes abruptly Russ
Snort 2.9.9.0 has been released! Snort Releases
Re: Snort++ crashes abruptly João Soares
Re: Snort++ crashes abruptly Russ

Thursday, 15 December

converting unified2 to pcap: 'ethertype Unknown' Marcin Dulak
Snort Subscriber Rules Update 2016-12-15 Research
(no subject) ????

Friday, 16 December

[HITB-Announce] HITB2017AMS CFP - FINAL CALL Hafez Kamal
Re: TCP Urgent data causes HTTPInspect to fail and prevents PAF to flush hey
Re: TCP Urgent data causes HTTPInspect to fail and prevents PAF to flush Russ
Re: snort2lua error Russ
Nginx default landing page sig James Lay

Saturday, 17 December

log to csv file on windows Nouar Ismail
Snort isn't alerting on some IPs Nouar Ismail

Sunday, 18 December

Re: Snort isn't alerting on some IPs wkitty42

Monday, 19 December

About sf_dcerpc.dll Alex
Re: Nginx default landing page sig Joshua Williams

Tuesday, 20 December

LDAPv3 with simple authentication FOULDE Damien
Snort Subscriber Rules Update 2016-12-20 Research
(no subject) lujain obeidat

Wednesday, 21 December

CVE-2016-3237 Rule GPN SACC
defragmentation issue Nouar Ismail
Re: defragmentation issue Joel Esler (jesler)
Re: CVE-2016-3237 Rule Joel Esler (jesler)
Snort performance: can a single snort instance with nearly 3000 rules handle 1G traffic per second? Maxim

Thursday, 22 December

c822775577302262c60c9417471f91c8ae6a07eb Zakariae
Snort++ - PCAPs are missing some packets João Soares
remove me from list Jose Laboy
Snort Subscriber Rules Update 2016-12-22 Research
Snort++ build 223 is now available on Snort.org! Snort Releases

Friday, 23 December

help donne schlessinger
Snort Version 2.9.9.0 GRE (Build 56) not writing in Unified2 format Franco Esmores
franco.esmores () donweb com Franco Esmores
Re: Snort Version 2.9.9.0 GRE (Build 56) not writing in Unified2 format wkitty42

Sunday, 25 December

Need help with telnet sepehr hashtroudilar
回复: Need help with telnet eagleliujin
Re: [Snort-users] 回复: Need help with telnet sepehr hashtroudilar
Re: 回复: Need help with telnet Luke Ager
Re: [Snort-users] 回复: Need help with telnet sepehr hashtroudilar
Re: [Snort-users] 回复: Need help with telnet Joel Esler (jesler)

Wednesday, 28 December

ipvar range patch for snort 2.9.9.0 ????????
1337 Bot and TCP options detection joshua burgess
Re: 1337 Bot and TCP options detection FOULDE Damien
Re: 1337 Bot and TCP options detection joshua burgess
Re: 1337 Bot and TCP options detection Y M
Proposed Rules for Acunetix Scanner lists
Re: Proposed Rules for Acunetix Scanner lists
Re: 1337 Bot and TCP options detection FOULDE Damien

Thursday, 29 December

(no subject) Krainer, Andreas
Re: LDAPv3 with simple authentication FOULDE Damien
Re: Snort-sigs Digest, Vol 127, Issue 22 Alex McDonnell
Re: LDAPv3 with simple authentication Joel Esler (jesler)
Re: Snort-sigs Digest, Vol 127, Issue 22 FOULDE Damien
Snort Subscriber Rules Update 2016-12-29 Research

Friday, 30 December

Request access to snort-users mailing list Vinson, John
Re: [Snort-users] 回复: Need help with telnet sepehr hashtroudilar

Saturday, 31 December

Re: 回复: Need help with telnet Rmkml