Release of the Snort 2.9.16.0 intrusion detection system

Cisco ΠΎΠΏΡƒΠ±Π»ΠΈΠΊΠΎΠ²Π°Π»Π° Release snort 2.9.16.0, a free attack detection and prevention system that combines signature matching methods, protocol inspection tools, and anomaly detection mechanisms.

The new release implements an early inspection mode for HTTP data, which works at the stage before regular handlers are triggered. To activate the mode, use the fast_blocking option in the http inspection settings block. In addition, the new release provides UTF-8 normalization of randomly encoded null values ​​in HTTP server responses, and also adds support for Glibc 2.30 and 64-bit Windows 10.

Source: opennet.ru

Add a comment