Symantec DeepSight Analyzer is a free service that gives you the ability to track and manage attacks on your computer. Sending your 'alert.log' to Symantecs DeepSight Analyzer, they will automatically correlate attacks from your Snort based Intrusion Detection Systems log (alert.ids), sending you a comprehensive view of your computer or general network.
This is the home of IDS Policy Manager for Windows. IDS Policy Manager is a Visual Basic application that was written to easily manage policies for multiple Snort sensors. It was written to incorporate features to make managing snort as easy and as powerful as possible.
This document is not a guide about how to fine-tune a sensor to nail out false positives and such, it just tries to summarize different approaches you can take after deciding that you in fact want to stop an alert from firing. Also, while Snort supports different kind of thresholding, this document is only about how to shut down specific alerts completely. The content reflects my personal opinions, which may not be valid in your environment, or even correct.
SAM Jr provides real-time analysis of Snort data. SAM Jr is written in Java and should run anywhere a modern JVM is available. SAM Jr will be extendable via plugins so that custom actions can be written easily.
SnortALog is a powerfull perl script that summarizes snort logs making it easy to view any attacks against your network.
SnortALog works with all versions of SNORT and is the only script who can analyse snort's logs in all formats (Syslog, Fast and Full alerts). Also, it is able to summarize Fw-1 (NG and 4.1), Netfilter and IPFilter logs in a simmilar way.
Metasploit provides useful information to people who perform penetration testing, IDS signature development, and exploit research. This project was created to provide information on exploit techniques and to create a useful resource for exploit developers and security professionals. The tools and information on this site are provided for legal security research and testing purposes only.