Open Side Menu
Skip to contentBrand Logo
Home
Help
Blogs
Events & Media
Challenges
Private Groups
  1. Immersive Community
  2. Help
  3. Help

Forum Discussion

retornet's avatar
retornet
Bronze III
10 months ago
Solved

Snort Rules: Ep.7 – Lokibot Infection Traffic

I need help with the last question please. I tried so many rules and I am still getting it wrong 13-Create a Snort rule to detect this User-Agent string in the HTTP header for connections using po...
application security
challenges
cyber range exercises
cyber ranges
defensive cyber
feedback
help & support
offensive cyber
other
questions & feedback
  • retornet's avatar
    retornet
    10 months ago

    the port number should be the source instead of dst 

retornet's avatar
retornet
Bronze III
10 months ago

I finally got it 

Featured Places

Help

Related Content
  • Re: SuperSonic: Ep.6 – TEMPLE
    1 year ago
    pbogu
  • Modern Encryption: Demonstrate Your Skills (Q9)
    6 months ago
    GuyIncognito
  • Re: Threat Hunting Mining Behaviour - Question 1
    1 year ago
    KieranRowley
  • New CTI Lab: Lotus Blossom Notepad ++ Campaign: Analysis
    3 months ago
    benhopkins
  • New CTI Labs: Ruby Jumper Campaign: Analysis and Threat Actors: APT37
    2 months ago
    benhopkins

Recent Discussions

  • hiroellis's avatar
    Microsoft Sentinel SOAR: Demonstrate Your Skills Question 11
    15 hours ago
    hiroellis
  • kevinh's avatar
    APT29 Threat Hunting with Splunk: Demonstrate Your Skills - Question 10
    Solved
    1 day ago
    kevinh
  • Tesleem's avatar
    Microsoft Sentinel SOAR: Demonstrate Your Skills
    1 day ago
    Tesleem
  • kevinh's avatar
    Threat Actors: Salt Typhoon – SNAPPYBEE Campaign Analysis - Question 7
    Solved
    3 days ago
    kevinh
  • Adbee's avatar
    Ethereum: The Blockchain, Transactions, and Explorers
    3 days ago
    Adbee
Community HomePrivacy PolicyHelp
Powered By Khoros