Skip to main content

Nimda Snort Rules

posted onSeptember 21, 2001
by hitbsecnews

Everyone and their brother has put out an advisory on NIMDA, the latest worm to thrash IExplore, Outlook Express, and IIS. This worm does a number of cute things that are well documented in the SANS advisory available here. Snort 1.8.1 included signatures to detect most of the attacks used by NIMDA already, but just incase you need a refresher the signatures are included.

Snort

Source

Tags

Networking

You May Also Like

Recent News

Tuesday, July 9th

Wednesday, July 3rd

Friday, June 28th

Thursday, June 27th

Thursday, June 13th

Wednesday, June 12th

Tuesday, June 11th

Friday, June 7th

Thursday, June 6th

Wednesday, June 5th