Hogwash 0.5 |
Date Added: May 08, 2010 | Visits: 1.068 |
|
||||||||
|
Hogwash is an inline packet scrubber that uses Snorts detection engine to drop malicious packets before they reach the target. The original version of what is now hogwash was written in 1996 while I was at Idaho State University. I had a web server that when patched, broke the software it needed to run. The box was being taken over every other day so I wrote the very first version of hogwash to filter out the offending packets and name it Scrub. A bunch of other admins were having the same problem so I distributed Scrub and patches started showing up in my mailbox. It became obvious that some sort of rules language was going to be needed. Over the weekend I wrote the original Cheap and Dirty detection engine. The summer of 1999 I had an intership at the Idaho National Enviromental and Engineering Labs. They used Snort extensively. I liked the simple layout of Snort so I welded it into Scrub in place of the Cheap and Dirty engine and renamed the project to SnortScrub. I left the INEEL to work for a startup in the dot-com era. The marketing department considered a commercial version of SnortScrub, but didnt like the name. SnortScrub got renamed to Hogwash as the stackless control channel and other goodies were added to it. Around this time, Hogwash began to fragment as people needed custom functionality, there were a couple of dozen incompatible versions of Hogwash that were all being maintained seperately. Development of the public version ground to a halt. As features were added, the Snort engine was showing its weaknesses for doing heavyweight packet scrubbing. The decision was made for resurrecting the old Cheap and Dirty engine and just put a snort compatibility layer on top of it. That pretty much brings us up to date. The newly dubbed H2 engine will be in final release in the next couple of months.. SourceForge.net. Fast, secure and free downloads from the largest Open Source applications and software directory.
|
| License: Freeware | Size: 194.56 KB |
|
Networking Tools
-
Pads 1.2
Pads (Passive Asset Detection System) is a signature-based detection engine used to passively detect network assets. Asset management is an important factor in information security. A good security administrator should keep track of all devices... |
235.52 KB | |
|
Utilities
-
CPU-Z 1.4
CPU-Z is a freeware detection program, based on the Panopsys hardware detection engine, that allows you to get some info on your computer. CPU-Z also provides several tools for a complete report, that includes CPUID, MSR, PCI device list, SPD,... |
432 KB | |
|
Virus Removers
-
SanityCheck 2.02.20230504
SanityCheck is an advanced rootkit and malware detection tool for Windows which thoroughly scans the system for threats and irregularities which indicate malware or rootkit behavior. By making use of special deep inventory techniques, this program... |
||
|
Networking Tools
-
Yavipind 0.9.6
Yavipind is a secure tunnel aka 2 peers securely forwarding packets toward each other. It forwards any kind of packet (IPv4, IPv6 or other) sent over the virtual point-to-point device (e.g. tun0). It fully runs in linux userspace. yavipin has... |
88.06 KB | |
|
Networking Tools
-
Basic Analysis and Security Engine 1.2
BASE is the Basic Analysis and Security Engine. It is based on the code from the Analysis Console for Intrusion Databases (ACID) project. This application provides a web front-end to query and analyze the alerts coming from a SNORT IDS system.... |
337.92 KB | |
|
Text Chat Clients
-
Aimwatch 0.9.1 beta
Aimwatch is a packet sniffer designed to reconstruct AOL Instant Messenger and ICQ information by passively collecting packets from the network.. |
32.77 KB | |
|
Remote Computing Tools
-
Sax2 Intrusion detection system(Free) 4.7
Ax3soft Sax2 is a professional intrusion detection and prevention software (NIDS) used to detect intrusion and attacks, analyze and manage your network which excels at real-time packet capture, 24/7 network monitor, advanced protocol analysis and... |
6.89 MB | |
|
Libraries
-
Packet Construction Set 0.5 Beta
Packet Construction Set is a set of Python modules and objects that make building network protocol code easier for the protocol developer. The core of the system is the pcs module itself which provides the necessary functionality to create... |
368.64 KB | |
|
Networking Tools
-
IP Personality 20020427-2.4.18
The Linux IP Personality patch adds to your Linux 2.4 kernel the ability to have different personalities network wise, that is to change some characteristics of its network traffic, depending on different parameters (anything you can specify in an... |
143.36 KB | |
|
Networking Tools
-
TNV 0.3.7
TNV stands for The Network Visualizer or Time-based Network Visualizer and depicts network traffic by visualizing packets and links between local and remote hosts. TNV is intended for network traffic analysis to facilitate learning what... |
|
Network & Internet
-
FreeHA 1.0
FreeHA is designed to provide a free, portable, and easy to use (compared to alternatives) program to run nodes in a high availability cluster. FreeHA will let you run a service (program), or group of services, on a computer, but have one or... |
20.48 KB | |
|
Network & Internet
-
mod_put 1.0
mod_put Apache module implements the HTTP/1.1 PUT and DELETE methods. Please notice that it can be a big security hole to activate them without securing the web server. Configuration: Integration with Apache 1.3.x - compiling and linking To... |
5.12 KB | |
|
Network & Internet
-
Pagetool 1.07
Pagetool provides a CMS (content management system) that allows people with limited technical skills to contribute to a website. What is Pagetool? Pagetool is a program that allows people with limited technical skills to modify and contribute... |
||
|
Network & Internet
-
BF2PHPAdmin 1.0.0
BF2PHPAdmin project is a Web tool to control your Battlefield 2 servers. BF2phpadmin is a Web tool which lets you control your Battlefield2 server using your favorite Web browser. You can host it anywere and access your BF2 server with the... |
93.18 KB | |
|
Network & Internet
-
Axelq 0.80
axelq is a queue manager for the download accelerator axel. axelq basically reads some URLs, caches them and runs axel to download them. To install just run ./install, or check ./install --help for options. You can uninstall with ./uninstall,... |
12.29 KB | |
|
Networking Tools
-
gvrpad 0.1
gvrpad is a daemon that makes GVRP announcements of all VLAN interfaces on a FreeBSD system. GVRP is the GARP VLAN Registration Protocol, defined in IEEE 802.1Q (VLANS); GARP is the Generic Attribute Registration Protocol, defined in 802.1D... |
15.36 KB | |
|
Networking Tools
-
arpwatch2html 0.9
Arpwatch is a network tool that monitors an ethernet broadcast domain and keeps a flat-file database of ethernet / ip address-pairings. Arpwatch furthermore reports certain changes via email and syslog messages. When you allocate (part of) your... |
8.19 KB | |
|
Networking Tools
-
Cheops 0.61
Cheops is an Open Source Network User Interface. It is designed to be the network equivalent of a swiss-army knife, unifying your network utilities. Cheops is for the network what a file manager is for your filesystem.. |
317.44 KB | |
|
Networking Tools
-
KVpnc 0.8.9
KVpnc is a KDE frontend for various vpn clients. KVpnc project supports Cisco VPN (vpnc) and IPSec (FreeS/WAN, racoon). vpnc is a replacement for the cisco VPN client and its used as client for the cisco3000 VPN Concentrator, FreeS/WAN... |
1.9 MB | |
|
Networking Tools
-
dynacc 0.5.0
Dynacc aims to be a Pakage which gives you control other your Internet Connection. It runs a linux router/host which provides MASQ services and HTTP proxying for a LAN. It gives you the Power to define users/groups which are allowed to make... |
122.88 KB |
