exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 101 - 125 of 244 RSS Feed

Files

snortalog_v2.3.0b.tgz
Posted Sep 9, 2004
Authored by Jeremy Chartier | Site jeremy.chartier.free.fr

Snortalog is a powerful Perl script that summarizes Snort logs, making it easy to view any network attacks detected by Snort. It can generate charts in HTML, PDF, and text output. It works with all versions of Snort, and can analyze logs in three formats: syslog, fast, and full snort alerts. Moreover, it is able to summarize other logs like Fw-1 (NG and 4.1), Netfilter, and IPFilter in a similar way.

Changes: Whois Database information available with -w option, Pix ICMP log detection enhancement, Smartdefense ICMP log detection enhancement, HTML output improvement, PDF output improvement, and more.
tags | tool, perl, sniffer
SHA-256 | 0d4cc0d9d0292a21b04399c87dd4e49064e0a9869488fa79dad3ad54c9986f08
openaanval-1.50-stable.tar.gz
Posted Aug 17, 2004
Site aanval.com

OpenAanval is an open-source web based Snort intrusion detection console. Currently supporting Snort and syslog, OpenAanval provides dynamic monitoring, comprehensive reporting and powerful alerting capabilities. OpenAanval supports multiple sensors of multiple intrusion detection system types. OpenAanval's web-browser interface provides live auto-updating technology which provides real time event viewing from any Internet connected web-browser.

Changes: New features of 1.50 include all new notes and incident tracking system. Additional syslog support now works with any device including cisco, sonicwall and more. New setup and installation system and much, much more.
tags | tool, web, sniffer
SHA-256 | 6954b53c5533f2bbcd1430594223d437edf739a08e572c6ed370fca5fe17f538
snort-2.2.0.tar.gz
Posted Aug 12, 2004
Authored by Martin Roesch | Site snort.org

Snort is an open source network intrusion detection system, capable of performing real-time traffic analysis and packet logging on IP networks. It can perform protocol analysis, content searching/matching and can be used to detect a variety of attacks and probes, such as buffer overflows, stealth port scans, CGI attacks, SMB probes, OS fingerprinting attempts, and much more. Includes real time alerting, incorporating alerting mechanisms for syslog, a user specified file, a UNIX socket, or WinPopup messages via smbclient.

Changes: Bug fixes.
tags | tool, overflow, cgi, sniffer, protocol
systems | unix
SHA-256 | ae41768b573a93be6ce056d3b984d9ce0a825eefcd6ec16ffbf5342e77677140
netsquid.tar.gz
Posted Jul 14, 2004
Authored by msconzo | Site security.tamu.edu

NetSQUID is a Perl script that sits inbetween Snort and IPTables. It looks at the alerts generated by Snort, then automatically creates an IPTables firewall entry to block problematic hosts (such as those infected by viruses). Web traffic is redirected to a webserver that can alert the user to the infection. The host is automatically unblocked after a specified time (hopefully reducing calls to your NOC). It can also send out DHCP address requests, so rogue DHCP servers can be detected by Snort.

Changes: Bug fixes and code cleanup.
tags | tool, web, perl, sniffer
SHA-256 | e294b20574821665b784aa2180752023c5d7f67c8afdde8d55474a88ec998551
FLoP-1.3.0.tar.gz
Posted Jul 8, 2004
Authored by DG | Site geschke-online.de

FLoP is utility designed to gather alerts with a payload from distributed Snort sensors at a central server, and to store them in a database. Both PostgreSQL and MySQL are currently supported. High priority alerts may be sent out via e-mail.

Changes: Feature enhancements and bug fixes.
tags | tool, sniffer
SHA-256 | 84b189826dc1420aa93d5606a2abac3ef90da339f45f43d57b91514047c8d749
placid-2.0.2.tar.gz
Posted Jun 18, 2004
Authored by Phillip Deneault | Site speakeasy.wpi.edu

Placid is a Web-based frontend for Snort that uses MySQL. It supports searching, sorting, and graphing of events, and was designed for speed and to have little overhead.

tags | tool, web, sniffer
SHA-256 | ba5053c0fa657843dd5104e29603b9ac0dc972aad91e0e15001b112f0afe169b
snort-2.1.3.tar.gz
Posted Jun 3, 2004
Authored by Martin Roesch | Site snort.org

Snort is an open source network intrusion detection system, capable of performing real-time traffic analysis and packet logging on IP networks. It can perform protocol analysis, content searching/matching and can be used to detect a variety of attacks and probes, such as buffer overflows, stealth port scans, CGI attacks, SMB probes, OS fingerprinting attempts, and much more. Includes real time alerting, incorporating alerting mechanisms for syslog, a user specified file, a UNIX socket, or WinPopup messages via smbclient.

Changes: Bug fixes.
tags | tool, overflow, cgi, sniffer, protocol
systems | unix
SHA-256 | 58e197fb51af2ae398f50f9e4f08749e94e5572cc6ef82bf74b7560f4236a419
FLoP-1.2.3.tar.gz
Posted May 29, 2004
Authored by DG | Site geschke-online.de

FLoP is utility designed to gather alerts with a payload from distributed Snort sensors at a central server, and to store them in a database. Both PostgreSQL and MySQL are currently supported. High priority alerts may be sent out via e-mail.

tags | tool, sniffer
SHA-256 | c7135d1f5ec0ac1b70c5dee0e15814bc3abb9d0b97f74703fb107e31cccd0262
snort2pf-3.3.tar.gz
Posted May 25, 2004
Authored by Stephan Schmieder | Site bsd-security.org

Snort2Pf is a small Perl daemon which greps Snort's alertfile and blocks the bad hosts for a given amount of time using pfctl.

Changes: Bug fixes.
tags | tool, perl, sniffer
SHA-256 | 438ba365303935c1d4822a8472364a15a56ff6dce642980908580f29c811abf3
openaanval-1.48-stable.tar.gz
Posted May 20, 2004
Site aanval.com

OpenAanval is an open-source web based Snort intrusion detection console. Currently supporting Snort and syslog, OpenAanval provides dynamic monitoring, comprehensive reporting and powerful alerting capabilities. OpenAanval supports multiple sensors of multiple intrusion detection system types. OpenAanval's web-browser interface provides live auto-updating technology which provides real time event viewing from any Internet connected web-browser.

Changes: Miscellaneous bug fixes including a client side memory leak. In addition various new features have been added and streamlined.
tags | tool, web, sniffer
SHA-256 | 77b12ac17e409a561b564cf05f38a1870ee616305166f1153043e242df097cef
oinkmaster-1.0.tar.gz
Posted May 18, 2004
Authored by Andreas Oestling | Site nitzer.dhs.org

Oinkmaster is simple Perl script released under the BSD license to help update and manage Snort 2.0+ rules and to comment out the unwanted ones after each update. It will report what has changed since the last update, offering good change control.

Changes: Feature enhancements, bug fixes, and many other improvements.
tags | tool, perl, sniffer
systems | bsd
SHA-256 | acd85eeb4b35eecc6aace83f16e870501f129c00ce925eb81da5576ff45a6827
mbd.tar.gz
Posted May 17, 2004
Authored by msconzo | Site security.tamu.edu

NetSQUID is a Perl script that sits inbetween Snort and IPTables. It looks at the alerts generated by Snort, then automatically creates an IPTables firewall entry to block problematic hosts (such as those infected by viruses). Web traffic is redirected to a webserver that can alert the user to the infection. The host is automatically unblocked after a specified time (hopefully reducing calls to your NOC). It can also send out DHCP address requests, so rogue DHCP servers can be detected by Snort.

tags | tool, web, perl, sniffer
SHA-256 | bcfefe2bdad05e3ef87f47860826e2d5667e3b1be86bc86bd387cc276c4aff77
openaanval-1.47-stable.tar.gz
Posted May 9, 2004
Site aanval.com

OpenAanval is an open-source web based Snort intrusion detection console. Currently supporting Snort and syslog, OpenAanval provides dynamic monitoring, comprehensive reporting and powerful alerting capabilities. OpenAanval supports multiple sensors of multiple intrusion detection system types. OpenAanval's web-browser interface provides live auto-updating technology which provides real time event viewing from any Internet connected web-browser.

Changes: This release includes a few major bug fixes and several minor new features.
tags | tool, web, sniffer
SHA-256 | 7964cfa752ea4d3d2d61f55640d29d955fe4816bdb4dfa5909ebd77913d66e28
snortalog_v2.2.1.tgz
Posted May 9, 2004
Authored by Jeremy Chartier | Site jeremy.chartier.free.fr

Snortalog is a powerful Perl script that summarizes Snort logs, making it easy to view any network attacks detected by Snort. It can generate charts in HTML, PDF, and text output. It works with all versions of Snort, and can analyze logs in three formats: syslog, fast, and full snort alerts. Moreover, it is able to summarize other logs like Fw-1 (NG and 4.1), Netfilter, and IPFilter in a similar way.

Changes: New HTML output, TEXT output improvement, GUI improvement, bug fixes.
tags | tool, perl, sniffer
SHA-256 | dbcac34e5da90620dee84d0b4c7628ffdf1deee52df83e0dca77b9cbbd32131d
openaanval-1.46-stable.tar.gz
Posted May 5, 2004
Site aanval.com

OpenAanval is an open-source web based Snort intrusion detection console. Currently supporting Snort and syslog, OpenAanval provides dynamic monitoring, comprehensive reporting and powerful alerting capabilities. OpenAanval supports multiple sensors of multiple intrusion detection system types. OpenAanval's web-browser interface provides live auto-updating technology which provides real time event viewing from any Internet connected web-browser.

Changes: 1.46 includes the new OAD (Offender Analysis Database) which links OpenAanval consoles from around the world together to share offender details and statistics.
tags | tool, web, sniffer
SHA-256 | c18542b3573a52576b2f5147617087abdddfce6272575db7305f6a5c9682011e
sass.snort.txt
Posted May 4, 2004
Authored by Martin Overton

Snort signatures that identify the new Sass worm that is propagating.

tags | tool, worm, sniffer
SHA-256 | b69ecb8046fb28e2ec5770410354925379943778ef8847ca1a3d9898bd74f9bc
FLoP-1.2.1.tar.gz
Posted Apr 22, 2004
Authored by DG | Site geschke-online.de

FLoP is utility designed to gather alerts with a payload from distributed Snort sensors at a central server, and to store them in a database. Both PostgreSQL and MySQL are currently supported. High priority alerts may be sent out via e-mail.

tags | tool, sniffer
SHA-256 | 04994cfedd9e83f32136db04988decc0e80f2c11ced7ef66a846e4c138e85dc6
cctde-0.2.tar.gz
Posted Apr 19, 2004
Authored by Simon Castro | Site gray-world.net

CCTDE is designed as an analysis backend for the Snort NIDS tool and focuses on providing a way to register and disclose information leading to the detection of unauthorized tunnels and covert channels.

Changes: First public release.
tags | tool, sniffer
SHA-256 | 0d547e754b02df848f6c4d655587f1f6450a799b688c2490123a87451ca09372
snort2pf-3.2.tar.gz
Posted Apr 10, 2004
Authored by Stephan Schmieder | Site bsd-security.org

Snort2Pf is a small Perl daemon which greps Snort's alertfile and blocks the bad hosts for a given amount of time using pfctl.

Changes: Improved portscan detection, various bug fixes.
tags | tool, perl, sniffer
SHA-256 | 645985c864ee2def03af54683bae97aab3fc6fbed5f1005cadec0de5a6405ee4
sntm-1.1.2.tgz
Posted Apr 8, 2004
Authored by Min Hsu | Site sntm.sourceforge.net

sntm is a Qt based GUI snort monitor. Currently, it is capable of monitoring multiple snort sensors in a centralized monitor screen. Each snort sensor creates a SSL encrypted communication thread to connect to the monitored server and each communication channel has its own certificate and private key.

tags | tool, sniffer
SHA-256 | be0f032160e7a7dbe339259015a5e5ab94ed2b3feafd0ce100e1331d07963422
FLoP-1.2.0.tar.gz
Posted Apr 3, 2004
Authored by DG | Site geschke-online.de

FLoP is utility designed to gather alerts with a payload from distributed Snort sensors at a central server, and to store them in a database. Both PostgreSQL and MySQL are currently supported. High priority alerts may be sent out via e-mail.

tags | tool, sniffer
SHA-256 | 75ac3155f76640bd2ff01ff755ca681bd8380fed8b2ea694406d455d9e5393b1
snort2pf-3.1.tar.gz
Posted Mar 30, 2004
Authored by Stephan Schmieder | Site bsd-security.org

Snort2Pf is a small Perl daemon which greps Snort's alertfile and blocks the bad hosts for a given amount of time using pfctl.

tags | tool, perl, sniffer
SHA-256 | 3d9a0bfee7572f4bfdbabc635748203efd9db23d46369073d9c9bc4549d93caa
snortalog_v2.2.RC2.tgz
Posted Mar 1, 2004
Authored by Jeremy Chartier | Site jeremy.chartier.free.fr

Snortalog is a powerful Perl script that summarizes Snort logs, making it easy to view any network attacks detected by Snort. It can generate charts in HTML, PDF, and text output. It works with all versions of Snort, and can analyze logs in three formats: syslog, fast, and full snort alerts. Moreover, it is able to summarize other logs like Fw-1 (NG and 4.1), Netfilter, and IPFilter in a similar way.

tags | tool, perl, sniffer
SHA-256 | 771a592c0b7e06103d663eab2d32b275b9d1e635916b545ba55d1dc3587350e4
snort-2.1.1.tar.gz
Posted Feb 26, 2004
Authored by Martin Roesch | Site snort.org

Snort is an open source network intrusion detection system, capable of performing real-time traffic analysis and packet logging on IP networks. It can perform protocol analysis, content searching/matching and can be used to detect a variety of attacks and probes, such as buffer overflows, stealth port scans, CGI attacks, SMB probes, OS fingerprinting attempts, and much more. Includes real time alerting, incorporating alerting mechanisms for syslog, a user specified file, a UNIX socket, or WinPopup messages via smbclient.

Changes: Fixed bugs and added signatures.
tags | tool, overflow, cgi, sniffer, protocol
systems | unix
SHA-256 | 0ab6801cdd4b46d3daa4544977306a6f222ca51e110966e0c2ce1900fd535506
cctde-0.1.tar.gz
Posted Feb 6, 2004
Authored by Simon Castro | Site gray-world.net

CCTDE is designed as an analysis backend for the Snort NIDS tool and focuses on providing a way to register and disclose information leading to the detection of unauthorized tunnels and covert channels.

tags | tool, sniffer
SHA-256 | 8cf44524aeec333268aa73ad3f6091da455b0506221fd4436901b5aaf1f5763f
Page 5 of 10
Back34567Next

Top Authors In Last 30 Days

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close