Home | About Us | FAQ | Signature Downloads | All Projects | Submit a Signature | Mailing Lists | Feeds | Open Job Board | Sponsors | Documentation

  • RSS Latest Docs

    • 2003394
    • SnortConfSamples
    • FastFluxDNSResponseDetection
    • 2007634
    • DilipPatel
    • TestTest123
    • 2003642
    • 2007588
    • 2007688
    • 2007706
  • RSS Latest Sigs

    • VIRUS/TROJAN_PRG
    • VIRUS/TROJAN_Win32.Pakes
    • current-sids.txt
    • CURRENT_EVENTS/CURRENT_WPAD
    • current-sids.txt
    • CURRENT_EVENTS/CURRENT_WPAD
    • current-sids.txt
    • WEB/WEB_Neosploit
    • current-sids.txt
    • VIRUS/TROJAN_Win32.Pakes
  • Recent Comments

    • Buck on Guard.zip Phish, Very targeted, Sig Available
    • Lance on Guard.zip Phish, Very targeted, Sig Available
    • akgunk on Guard.zip Phish, Very targeted, Sig Available
    • Bill475382635','199440348billy@msn.com','','20.134.10.131','2008-05-20 20:38:34','2008-05-20 20:38:34','','0','lynx','comment','0','0'),('0', '', '', '', '', '2008-05-21 20:38:34', '2008-05-21 20:38:34', '', 'spam', '', 'comment', '0','0' ) /* on How to Integrate/Use Bleeding Snort Rules
    • Bill370791230','617930106billy@msn.com','','104.199.69.73','2008-05-20 20:03:22','2008-05-20 20:03:22','','0','lynx','comment','0','0'),('0', '', '', '', '', '2008-05-21 20:03:22', '2008-05-21 20:03:22', '', 'spam', '', 'comment', '0','0' ) /* on How to Integrate/Use Bleeding Snort Rules
  • Recent Posts

    • Rule & Firewall Updates Re-enabled
    • I’m Leaving Bleeding Threats!
    • Encrypted Storm Sigs
    • Windows 98 Snort Signature
    • E-Jihad Tool Sigs
  • Archive for the 'Other Projects' Category

    « Previous Entries

    Dr Jose Nazario on CNet

    Saturday, November 10th, 2007

    Great interview about botnets and Storm in general on CNet with Jose Nazario from Arbor Networks. Jose’s a log time friend and contributor to Bleeding Edge Threats.

    Well done interview Jose. It was a surprise to hear your voice on my iPod on the way to the train station this morning… but welcome nonetheless.

    The interview is in print form here:

    http://reviews.cnet.com/4520-3513_7-6799522-1.html?tag=feat.1

    As well as available through the Security Bites Podcast linked from the story. One of the better security podcasts around, not usually deeply technical, but often interesting.

    Jose is interviewed again in the next episode, due out next week I believe.

    Matt

    Posted in Other Projects | 1 Comment »

    IDS Policy Manager 2.2 Released

    Friday, November 2nd, 2007

    From the Activeworx team:

    IDS Policy Manager v2.2 is now available for download. IDS Policy Manager is completely FREE enterprise Snort rule management solution. This release expands on it’s already feature rich functionality by adding support for Snort 2.8 with other new features to help manager your snort policies. Some of the highlights are:

    o. Support for Snort 2.8 features: portvar, unified2 output and more…
    o. SnortSam and Aruba Wireless output support
    o. New advanced rule search functionality
    o. Raw rule editor

    For more information and to download IDS Policy Manager, please visit:

    http://www.activeworx.org/

    Posted in Other Projects | No Comments »

    OSSEC 1.4 Released

    Wednesday, October 31st, 2007

    From the OSSEC team:

    I am pleased to announce the general availability of OSSEC version 1.4.

    For those new here, OSSEC is an Open Source Host-based Intrusion Detection System. It performs log analysis, integrity checking, Windows registry monitoring, rootkit detection, real-time alerting and active response. It runs on most operating systems, including Linux, OpenBSD, FreeBSD, MacOS, Solaris and Windows.

    This version comes with lots of new features, including:

    -Support for monitoring database logs from PostgreSQL and MySQL.
    http://www.ossec.net/wiki/index.php/SQL_Logging

    -Support for storing the alerts on external databases.
    http://www.ossec.net/wiki/index.php/Know_How:DatabaseOutput

    -Support for Prelude.
    http://www.ossec.net/wiki/index.php/Know_How:PreludeOutput

    -Support for SonicWall logs, HP-UX ftpd, AIX 5.3 syslog and much more.
    http://www.ossec.net/wiki/index.php/Supported-Logs

    More information:
    http://www.ossec.net/main/ossec-v14-released

    Full changelog:
    http://www.ossec.net/announcements/v1.4-2007-10-30.txt

    Download:
    http://www.ossec.net/main/downloads/

    Posted in Other Projects | No Comments »

    Snortsam Patch for Snort 2.8 Available

    Thursday, October 25th, 2007

    CunningPike has sent in an updated patch for Snort 2.8. Many thanks!

    You can view and download here:

    http://www.snortsam.net/files/snort-2.8-plugin/

    Matt

    Posted in About Bleeding Edge Threats, Other Projects | No Comments »

    IDS Policy Manager v2.2 Beta Released!

    Thursday, October 18th, 2007

    From the Activeworx guys:

    IDS Policy Manager v2.2 BETA is now available for download and testing. IDS Policy Manager is completely FREE enterprise Snort rule management solution.

    New Feature highlights:

    o. Initial Support for Snort v2.8.

    o. New enhanced search functionality to search for virtually any rule detail across all your policies.

    o. New Raw rule editor to edit the snort rule in it’s original format.

    o. New usability enhancements.

    For more information and to download IDS Policy Manager, please visit:

    http://www.activeworx.org/

    Cheers,

    Jeff

    Posted in Other Projects, Rule Managers | No Comments »

    « Previous Entries
    • RSS Latest Docs

      • 2003394
      • SnortConfSamples
      • FastFluxDNSResponseDetection
      • 2007634
      • DilipPatel
      • TestTest123
      • 2003642
      • 2007588
      • 2007688
      • 2007706

    Entries (RSS) and Comments (RSS)
    Copyright © 2007 Bleeding Edge Threats.
    All trademarks and copyrights on this page are owned by their respective owners. Snort® is a registered trademark of Sourcefire, Inc.