Documents

The following setup guides have been contributed by members of the Snort Community for your use. Comments and questions on these documents should be submitted directly to the author by clicking on their names below.


Latest rule documents - Search
1:64466
This rule looks for HTTP indicators known to be specific to Win.Trojan.KoiStealer outbound cnc connection attempts.
1:64465
This rule looks for HTTP indicators known to be specific to Win.Trojan.KoiStealer outbound cnc connection attempts.
1:64464
This rule detects directory traversal attempts against vulnerable versions of Nostromo httpd server.
1:64463
This rule detects directory traversal attempts against vulnerable versions of Nostromo httpd server.
1:64462
This rule looks for bytes known to be specific to a Win.Loader.Agent variant.
1:64461
This rule looks for bytes known to be specific to a Win.Loader.Agent variant.