wIDSard is an host based Intrusion Detection System.It intercepts syscalls made by the process to monitor at user levelby the ptrace mechanism. It can detect not only single system calls, but evensequences, ripetition, negation ecc.
Be the first to post a text review of widsard IDS. Rate and review a project by clicking thumbs up or thumbs down in the right column.
tested on Fedora CORE 4
wIDSard 0.20 released
Various minor bug fixes
wIDSard is a host intrusion detection system for Linux. It intercepts, at user level (Kernel modification not required), system calls specified in a configuration file written by the user. It is based on strace source for syscall interception. A finite-state automata is used to trace the monitored process. The language used for the configuration file is regular expression based.
First public release
First public release
Be the first person to add a text review.
Copyright © 2009 Geeknet, Inc. All rights reserved. Terms of Use
Thanks for your rating!
Would you also like to write a review?
Thanks for your review!
Get credit for your review by logging in via OpenID. Click your account provider: