[Snort-sigs] BAD-TRAFFIC dns cache poisoning attempt sid:13667

yew chuan Ong yewchuan_23 at ...144...
Thu Nov 8 02:33:40 EST 2012


I found the description of this sig here - http://cs.uccs.edu/~cs591/ids/snort/snort2_9_0/so_rules/bad-traffic.rules.

But, when I downloaded the rules from Snort, I found nothing related inside bad-traffic.rules. Any ideas? 

This sig is still enabled by default right?


Yew Chuan
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-sigs/attachments/20121107/81b1c8ec/attachment.html>

More information about the Snort-sigs mailing list