Snort is a network intrusion detection and prevention system. It is the most widely deployed technology of its kind in the world. It performs detection using a variety of methods including rules-based detection, anomaly detection, and heuristic analysis of network traffic. Its rules language is open source and available to the public as well.
Features
- Protocol analysis and content searching/matching
- Uses a flexible rules language to describe traffic that it should collect or pass
- Detection engine that utilizes a modular plug-in architecture
- Real-time alerting capability
- Detects buffer overflows, stealth port scans, CGI attacks, SMB probes, OS fingerprinting attempts, and more
windows : Snort_2_9_4_1_Installer.exe (2.7 MB)
Unix/Linux : snort-2.9.4.1.tar.gz (5.3 MB)
Find Other version |
Sources : http://www.snort.org
0 comments:
Post a Comment