On Sat, Sep 20, 2003 at 10:46:14PM -0700, [EMAIL PROTECTED] wrote: > Hey, has anyone else seen this: > > http://www.phrack.nl/phrack62/p62-0x0d.txt > > It looks like the PHC folks are at it again, the above is an article > on "sneeze", a new script that will generate traffic to trigger on every > snort rule. > > Also, appended to the end of the article is the home dirs of everyone > at Sourcefire/Snort. You can see what is in Marty's directory, etc. Go > check it out.
Yes, this was a LONG time ago. Note that ALL of the date timestamps are dashed out. Gee, I wonder why. As well as normal incident response, the entire snort team did a major audit of snort at that time for anything injected. BTW, for those of you wanting the original sneeze, its still available online at http://snort.sourceforge.net/sneeze-1.0.tar -brian _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
