Snort

Snort

Cisco
+
+

Related Products

  • Blumira
    150 Ratings
    Visit Website
  • Cloudbrink
    28 Ratings
    Visit Website
  • HostZealot
    306 Ratings
    Visit Website
  • Emtrain
    48 Ratings
    Visit Website
  • Setplex
    10 Ratings
  • Signalmash
    16 Ratings
    Visit Website
  • UptimeRobot
    852 Ratings
    Visit Website
  • Notifyre
    60 Ratings
    Visit Website
  • Monk
    7 Ratings
    Visit Website
  • Unimus
    34 Ratings
    Visit Website

About

Snort is the foremost Open Source Intrusion Prevention System (IPS) in the world. Snort IPS uses a series of rules that help define malicious network activity and uses those rules to find packets that match against them and generates alerts for users. Snort can be deployed inline to stop these packets, as well. Snort has three primary uses: As a packet sniffer like tcpdump, as a packet logger — which is useful for network traffic debugging, or it can be used as a full-blown network intrusion prevention system. Snort can be downloaded and configured for personal and business use alike. Once downloaded and configured, Snort rules are distributed in two sets: The “Community Ruleset” and the “Snort Subscriber Ruleset.” The Snort Subscriber Ruleset is developed, tested, and approved by Cisco Talos. Subscribers to the Snort Subscriber Ruleset will receive the ruleset in real-time as they are released to Cisco customers.

About

Xplico is installed in the major distributions of digital forensics and penetration testing: Kali Linix, BackTrack, DEFT, Security Onion, Matriux, BackBox, CERT Forensics Tools, Pentoo and CERT-Toolkit. Xplico allows concurrent access by multiple users. Any user can manage one or more Cases. The UI is a Web User Interface and its backend DB can be SQLite, MySQL or PostgreSQL. Xplico can be used as a Cloud Network Forensic Analysis Tool. The goal of Xplico is extract from an internet traffic capture the applications data contained. For example, from a pcap file Xplico extracts each email (POP, IMAP, and SMTP protocols), all HTTP contents, each VoIP call (SIP), FTP, TFTP, and so on. Xplico isn’t a network protocol analyzer. Xplico is an open source Network Forensic Analysis Tool (NFAT). At each data reassembled by Xplico is associated a XML file that uniquely identifies the flows and the pcap containing the data reassembled.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

IT teams searching for a network detection and prevention solution

Audience

Analysts and security teams looking for a digital forensics and penetration testing solution to optimize case management

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Reviews/Ratings

Overall 5.0 / 5
ease 3.0 / 5
features 5.0 / 5
design 5.0 / 5
support 5.0 / 5

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Pros & Cons from Real Users

Pros

  • Free for any platform not just the web. Has multiple different filter lists to learn about and choose from based off of your needs.

Cons

  • A little bit of a pain to set up on windows if you don't know how to use command prompt.

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Cisco
Founded: 1984
United States
www.snort.org

Company Information

Xplico
Founded: 2007
www.xplico.org

Alternatives

Alternatives

NetworkMiner

NetworkMiner

Netresec
Snort

Snort

Snort Social
WinDump

WinDump

WinPcap
Omnipeek

Omnipeek

LiveAction

Categories

Categories

Integrations

Elastic Observability
EndaceProbe
Joe Sandbox
MySQL
NXLog
Palo Alto ATP
Panaseer
Picus
Project Ares
SQLite
ThreatQ

Integrations

Elastic Observability
EndaceProbe
Joe Sandbox
MySQL
NXLog
Palo Alto ATP
Panaseer
Picus
Project Ares
SQLite
ThreatQ
Claim Snort and update features and information
Claim Snort and update features and information
Claim Xplico and update features and information
Claim Xplico and update features and information