[Snort-users] Virus pattern detection

Miguel Koren O'Brien de Lacy miguelk at ...3603...
Tue Sep 25 18:24:03 EDT 2001


By reading the Snort User's Manual, where I see that: it seems to be
possible to use plug-ins from:

Bugtraq http://www.securityfocus.com/bid/
        CVE http://cve.mitre.org/cgi-bin/cvename.cgi?name=
        Arachnids http://www.whitehats.com/info/IDS
        McAffee http://vil.nai.com/vil/dispVirus.asp?virus_k=


I get the impression that it's possible to 'plug-in' a virus pattern
from McAfee and have Snort analyze the packets according to those
patterns. Is this possible?





More information about the Snort-users mailing list