OSSEC: the Open Source Host Intrusion Detection System
Dec 07, 2010, 19:34 (0 Talkback[s])
(Other stories by Houcem HACHICHA)
[ Thanks to Houcem HACHICHA for this
link. ]
" With over seven years of active development, and more
than 20000 downloads a month, OSSEC has become the de-facto
standard for open source Host-based Intrusion Detection.
"If you have ever worked on information security, than you must
have heard of Snort, the Open Source Network Intrusion Detection
System. Together with a Firewall, a well configured Snort sensor
placed between your LAN and Internet, is a good protection against
external threats. Nevertheless, According to Forrester Research,
the majority of security breaches involve internal employees, with
some estimates as high as 85 percent. So what if an employee of
yours launches a local attack without casting a single packet? Host
based Intrusion Detection Systems, namely OSSEC, are a
solution."
Complete Story
Related Stories: