[Snort-users] how to write rule for msfpayload in linux

DFIRob rd.seclists at gmail.com
Sat Nov 18 14:16:56 EST 2017


Hi, do you have a pcap that you want to alert on?

On Sat, Nov 18, 2017 at 3:22 PM, nguyen cao via Snort-users <
snort-users at lists.snort.org> wrote:

> who can help me about write rule for msfpayload in linux ?
> creat payload by msfpayload : msfpayload windows/meterpreter/reverse_tcp
> LHOST=/ /  LPORT=/ /....
>
> _______________________________________________
> Snort-users mailing list
> Snort-users at lists.snort.org
> Go to this URL to change user options or unsubscribe:
> https://lists.snort.org/mailman/listinfo/snort-users
>
> Please visit http://blog.snort.org to stay current on all the latest
> Snort news!
>
> Please follow these rules: https://snort.org/faq/what-is-
> the-mailing-list-etiquette
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20171118/b5a33557/attachment.html>


More information about the Snort-users mailing list