Documents

The following setup guides have been contributed by members of the Snort Community for your use. Comments and questions on these documents should be submitted directly to the author by clicking on their names below.


Latest rule documents - Search
1:64373
This rule looks for a known malicious TLS certificate used by DcRat.
1:64372
This rule looks for specific patterns within DcRat's protocol.
1:64371
This rule looks for bytes unique to the file.
1:64370
This rule looks for bytes unique to the file.
1:64369
This rule looks for strings unique to the file.
1:64368
This rule looks for strings unique to the file.