logo       

Bleedingsnort.com Daily Update: msg#00158

security.ids.snort.sigs

Subject: Bleedingsnort.com Daily Update


[***] Results from Oinkmaster started Wed Oct 20 20:00:02 2004 [***]

[+++] Added rules: [+++]

-> Added to bleeding.rules (1):
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS
(msg:"BLEEDING-EDGE MS04-030 Attempted DoS"; flow:to_server;
content:"xmlns\:z"; content:"xml\:"; nocase; flowbits:isnotset,tagged;
flowbits:set,tagged; tag:host,10,packets,src;
reference:url,isc.sans.org/diary.php?date=2004-10-20; classtype:attempted-dos;
sid:2001362;; rev:1;)

[+++] Added non-rule lines: [+++]

-> Added to bleeding-sid-msg.map (1):
2001362 || BLEEDING-EDGE MS04-030 Attempted DoS ||
url,isc.sans.org/diary.php?date=2004-10-20

[*] Added files: [*]
None.



-------------------------------------------------------
This SF.net email is sponsored by: IT Product Guide on ITManagersJournal
Use IT products in your business? Tell us what you think of them. Give us
Your Opinions, Get Free ThinkGeek Gift Certificates! Click to find out more
http://productguide.itmanagersjournal.com/guidepromo.tmpl


<Prev in Thread] Current Thread [Next in Thread>
Google Custom Search

News | FAQ | advertise