Saving Our Bacon: Snort Security Holes and Strategies for Safe Network
Monitoring (O'ReillyNet)
[Posted June 3, 2003 by ris]
O'ReillyNet
covers
recent vulnerabilities in Snort along with strategies to minimize risks.
"
Since the main purpose of Snort is detection, a primary goal of
attackers is evasion. If attacks can be structured so that they are
overlooked by Snort, then system administrators will be left with a false
sense of security -- arguably a worse situation than if Snort had not been
used at all."
(
Log in to post comments)