Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Focus-IDS
[Top] [All Lists]

Re: Re: Re: Re: Re: HTTP traffic

Subject: Re: Re: Re: Re: Re: HTTP traffic
Date: Mon, 13 Aug 2007 22:04:56 +0530
"part of company's properity project." - yes
abhicc - okay... give me one or two browser bugs and write a perfect
snort rule for those to detect it, I'll show you some live examples
how false positive might occur.
I'm not aware of if people share such things in these kind of
conferences, but I'm quite sure people do in thesis :). And I never
came to any conclusion. Just said chances are there.

--Abhishek


On 11 Aug 2007 03:44:12 -0000, abhicc285@gmail.com <abhicc285@gmail.com> wrote:
Abhishek Bhyhan Says :----


" What kind of result you want to know? I cannot share with you the benchmark 
or test setup details, but could certainly give you many examples. Again, 
that would be disclosing something which should not be :) "



Abhishek Bhyan, I am interested in knowing how you came to conclusion that 
client side rules give more false positives than Web Server Side.  You are 
sharing the results and not the testsetup or benchmark.  Has it been 
published in some conference like black hat, IEEE SP, Virus bulletin or this 
is some thing which you did on you own or is it a part of company's properity 
project.


Has it been validated????



------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it
with real-world attacks from CORE IMPACT.
Go to 
http://www.coresecurity.com/index.php5?module=Form&action=impact&campaign=intro_sfw
to learn more.
------------------------------------------------------------------------



------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it 
with real-world attacks from CORE IMPACT.
Go to 
http://www.coresecurity.com/index.php5?module=Form&action=impact&campaign=intro_sfw
 
to learn more.
------------------------------------------------------------------------

<Prev in Thread] Current Thread [Next in Thread>