[Snort-users] Fun with IPF and Snort

Gregor Binder gbinder at ...462...
Mon Mar 19 13:47:45 EST 2001

shawn . moyer on Mon, Mar 19, 2001 at 12:33:18PM -0600:

> Marcus Ranum also had a cool idea about building scripts that redirect
> attacks back to the attacker's own box, so that they actually root
> themselves. :)

.. and make yourself a relay for attacks for people that can fake source
addresses :(

Please don't forget that there is a thing called spoofing, and you might
be setting yourself up as part of another attack.

DEM0.02 :)

Gregor Binder       <gregor.binder at ...462...>      http://sysfive.com/
sysfive.com GmbH               UNIX. Networking. Security. Applications.
PGP id: 0x20C6DA55 fp: 18AB 2DD0 F8FA D710 1EDC A97A B128 01C0 20C6 DA55

More information about the Snort-users mailing list