|
-
August 20th, 2007, 10:20 PM
#2
You could try having snort listen for something from x.x.x.x to y.y.y.y then write an alert to a log file only used by this rule. Have logwatch or some custom script check that log every second, then re-writes the packet swapping the source and destination in the header with an ip spoofing tool such as hunt.
Similar Threads
-
By HackerzMaster in forum IDS & Scanner Discussions
Replies: 18
Last Post: September 15th, 2007, 01:31 PM
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|