I'd also recommend you to read RFP's very good paper: A look at whisker's anti-IDS tactics.
You can find it on his site, http://www.wiretrip.net/rfp/pages/whitepapers/whiskerids.html Best regards, Bojan Zdrnja > -----Original Message----- > From: ph00dy [mailto:[EMAIL PROTECTED]] > Sent: 5. travanj 2002 0:23 > To: [EMAIL PROTECTED] > Subject: IDS evasion && testing > > > Hey *, > I am looking for good information on defeating/testing NIDS. I have > tryed some "alert overflowing", and sending some > attacks/scans very slowly > to see what the results are, but I imagine there is someone > who has done > more of this sort of testing that knows something I don't. > Any experience, > Ideas, papers etc.. would be helpful. > > > Thanks.. > ph00dy > > > > > -------------------------------------------------------------- > -------------- > This list is provided by the SecurityFocus Security > Intelligence Alert (SIA) > Service. For more information on SecurityFocus' SIA service which > automatically alerts you to the latest security > vulnerabilities please see: > https://alerts.securityfocus.com/ > > ---------------------------------------------------------------------------- This list is provided by the SecurityFocus Security Intelligence Alert (SIA) Service. For more information on SecurityFocus' SIA service which automatically alerts you to the latest security vulnerabilities please see: https://alerts.securityfocus.com/
