RE: IDS Informer

From: Oliver Petruzel (opetruzel@cox.net)
Date: 10/05/02


From: "Oliver Petruzel" <opetruzel@cox.net>
To: "'Delroy Gooden'" <delroygooden@hotmail.com>, <focus-ids@securityfocus.com>
Date: Sat, 5 Oct 2002 17:38:51 -0400

I have honestly found little value in any COTS or packaged IDS testing
software. For best results, stick to manual testing using the latest
and greatest "wild" or custom exploits and IDS evasion techniques.

Just my NSHO.

./oliver

-----Original Message-----
From: Delroy Gooden [mailto:delroygooden@hotmail.com]
Sent: Friday, October 04, 2002 9:13 AM
To: focus-ids@securityfocus.com
Subject: IDS Informer

Hi,

Have been thinking about buying IDS Informer to test my ids rather than
using Cybercop Scanner as it is defunkt, does anyone use the application
or
have any comments?

Delroy

_________________________________________________________________
MSN Photos is the easiest way to share and print your photos:
http://photos.msn.com/support/worldwide.aspx



Relevant Pages

  • RE: IDS Informer
    ... Subject: IDS Informer ... The main difference with IDS Informer and other testing tools (such ... While the attack is happening we have a network ...
    (Focus-IDS)
  • RE: IDS Informer
    ... quickly answer you question we can target any ip address. ... on the same segment as the IDS without harming that machine. ... I was looking at the IDS Informer and noticed ... While the attack is happening we have a network ...
    (Focus-IDS)
  • RE: IDS Informer
    ... The main difference with IDS Informer and other testing tools (such ... While the attack is happening we have a network ...
    (Focus-IDS)
  • Re: IDS Informer
    ... I would like to respond in kind to your message concerning IDS Informer. ... all but actually send the captured exploit by injecting the attack traffic ... >tcpreplay to record and replay the attacks onto a static wire later on, ...
    (Focus-IDS)
  • RE: IDS Testing tool
    ... Testing an in-line IDS is extremely simple if you use IDS Informer, ... Currently the database is limited to around 650 attacks with new attack ... through the Informer Development Kit which will convert virtually any packet ...
    (Focus-IDS)