Network Intrusion Detection Systems (SNORT)

แชร์
ฝัง
  • เผยแพร่เมื่อ 15 ธ.ค. 2024

ความคิดเห็น • 178

  • @UralaTAO
    @UralaTAO 4 ปีที่แล้ว +38

    Loi Liang Yang, that was a splendid lecture.
    Thank you!

    • @LoiLiangYang
      @LoiLiangYang  4 ปีที่แล้ว +3

      Glad you enjoyed the splendid lecture.

  • @LoiLiangYang
    @LoiLiangYang  5 ปีที่แล้ว +9

    Remember to subscribe now so that you can learn all about technology and cyber-security.

    • @TheTruth_4U
      @TheTruth_4U 5 ปีที่แล้ว

      6:04 "sudo gedit" command not found?

    • @OmarMohamed-ub7tp
      @OmarMohamed-ub7tp 5 ปีที่แล้ว

      What if you scan stealth ily..nmap -sS -A -pn "the ip to scan"..

  • @sheepdog8092
    @sheepdog8092 5 ปีที่แล้ว +20

    Thanks for the live view. As a student, it's very helpful to see what the attack "looks" like in the IDS

  • @jimboelterdotcomm9153
    @jimboelterdotcomm9153 5 ปีที่แล้ว +5

    My first taste of what it's like to use SNORT and to "see" what an IDS is reporting. Quick, incisive, and very helpful. Thanks.

  • @SRF69
    @SRF69 3 ปีที่แล้ว +3

    Mr. Yang, I have to say, your clear and precise explanations is something I admire. I wish all lectures and tutorials were this easy to follow! Thank you Sir.

  • @RnVjayBZb3V0dWJl
    @RnVjayBZb3V0dWJl 4 ปีที่แล้ว +94

    That's the most angry intro I've ever seen xD

    • @doomerlifez
      @doomerlifez 4 ปีที่แล้ว

      Lol

    • @pedrocamposnl
      @pedrocamposnl 3 ปีที่แล้ว +1

      wtf ...are you looking for beauty video?

    • @tonyvelasquez6776
      @tonyvelasquez6776 2 ปีที่แล้ว

      @@pedrocamposnl yo brodie my asspipe stinks and I love it brodie

    • @farzadmoradkhani
      @farzadmoradkhani 4 หลายเดือนก่อน

      Who cares about intro, watch the whole thing

  • @naeemali7369
    @naeemali7369 2 ปีที่แล้ว +1

    Simple, short and effective, keep teaching like this.
    All the best.

  • @Fatty-b9m
    @Fatty-b9m 4 ปีที่แล้ว +4

    This video is amazing! Probably the best videos I have watched! Thanks a lot!

  • @stillchilling1582
    @stillchilling1582 3 ปีที่แล้ว +2

    "Open sauce" You're great and this tutorial is awesome.

  • @Abdulaziz-fg3mh
    @Abdulaziz-fg3mh 4 ปีที่แล้ว +5

    you are very clear and easy to follow. THANK YOU A LOT!

  • @maximo741
    @maximo741 4 ปีที่แล้ว

    I remember when I started studying Cyber Security and your videos only had 1 thousand view look at you now

  • @billcobb8617
    @billcobb8617 5 ปีที่แล้ว +4

    Thanks for the great video. Could you do a video on how to implement SNORT as an IPS inline and on what type of appliance would you recommend VM and bare metal?

  • @chrisspatgen
    @chrisspatgen 4 ปีที่แล้ว +1

    Thank you for the very informative video. I currently have pFsense running pfBlockerNG, Suricata and Snort w/Subscription. I was wondering since pfBlockerNG has both IP and DNS blocking capabilities, why do I need Snort or Suricata, they only do IP blocking. I understand that each of the installed programs have different rules sets, I assume pfBlockerNG would have a larger rule set then both Snort and Suricata combined, so pfBlockerNG makes Snort and Suricata redundant? Thoughts, comments?

  • @marcharrison9847
    @marcharrison9847 5 ปีที่แล้ว

    Non-stop information, subscribed. Your pronounciation is fantastic too, keep them coming.

  • @-someone-.
    @-someone-. 6 หลายเดือนก่อน

    This is now included by default in Kali 2024.2
    You look so young here! And more serious than recent vids😅

  • @raginranga3494
    @raginranga3494 3 ปีที่แล้ว

    Just found your channel Loi Liang Yang and hooked 🖖

  • @alizakhan6552
    @alizakhan6552 ปีที่แล้ว

    such a great short intro thank you so much.

  • @munhumutapa1330
    @munhumutapa1330 5 ปีที่แล้ว +2

    Great job Loi. Extremely helpful for noobs in cyber security like myself

    • @LoiLiangYang
      @LoiLiangYang  5 ปีที่แล้ว

      Everyone has to start somewhere. We all learn together.

    • @kjbineystudios
      @kjbineystudios ปีที่แล้ว

      I bet you're killing it by now... Four years down the line.

  • @robertrausch482
    @robertrausch482 4 ปีที่แล้ว +2

    when you got bars on the window, you KNOW shit is serious

  • @thussprachscaramouchestra6593
    @thussprachscaramouchestra6593 ปีที่แล้ว +3

    My man lookin like Chinese Andrew Tate!

  • @naseerchoudhury9508
    @naseerchoudhury9508 3 ปีที่แล้ว +1

    Aside from information leakage, do you have videos on other types of attacks?

  • @atlantajunglepythons1744
    @atlantajunglepythons1744 7 หลายเดือนก่อน

    It was a great introduction to this topic, thank you! I feel like I learned a lot & now I have more rabbit holes to chase down ha ha but seriously do you think it would be important to have a separate machine guarding a network of machines, clusters, data, servers, and an intrusion detection/prevention Machine before or after the internal router? I’m sure with more study it will make sense.. I’m looking forward to more on the topic.

  • @tangly2264
    @tangly2264 3 ปีที่แล้ว

    7:09 why the “-c /etc/snort/snort.conf”, isn’t it set that path by default in snort?

  • @LoiLiangYang
    @LoiLiangYang  5 ปีที่แล้ว +8

    New video released for SNORT on Intrusion Detection System: th-cam.com/video/pjoZfOLMDgU/w-d-xo.html

    • @christreedee
      @christreedee 4 ปีที่แล้ว

      This is so clear and easily put into play! thanks

    • @sibathassan781
      @sibathassan781 4 ปีที่แล้ว

      How are you brother very fine brother please help me this is WhatsApp brother name hacking in Infosys ok no ke yes what are you picture video audio call data WhatsApp hack impossible please reply boy

  • @oloratoditiro737
    @oloratoditiro737 3 ปีที่แล้ว

    I really like your lecture is very sound crystal clear..Thank you a slot

  • @deedeepoo
    @deedeepoo ปีที่แล้ว

    Thank you for the clear lecture, but I would say this is host IDS since it's not actually covering the whole network

  • @Omni-knight
    @Omni-knight ปีที่แล้ว

    Sorry If my question might sound stupid, but how do you prevent those attacks from attacking your network?

  • @riskay6843
    @riskay6843 4 ปีที่แล้ว +1

    Hi, i have problem with my snort.conf mine is just a blank, so i need to write all the rule and conf?

  • @moryg.408
    @moryg.408 5 ปีที่แล้ว +2

    Great presentation! Thank you Mr. Yang

  • @mohammadabdussamad2258
    @mohammadabdussamad2258 6 ปีที่แล้ว +1

    When professionals perform pentest for companies are they granted access to their network system? Or do they have to perform it over WAN??

    • @LoiLiangYang
      @LoiLiangYang  5 ปีที่แล้ว

      Depends on what is written on the contract for the scope of coverage.

  • @PoojaNaveenkumar
    @PoojaNaveenkumar 5 หลายเดือนก่อน

    Did u use 2 systems for ubuntu or only one system?

  • @0fficialRatedR
    @0fficialRatedR 4 ปีที่แล้ว +1

    are the configurations propel though

  • @cralca
    @cralca 6 ปีที่แล้ว +2

    Hey Loi! thks a lot, very clear and useful tutorial, again thanks a lot!!!!!!!

  • @AlbionofRunescape
    @AlbionofRunescape 2 ปีที่แล้ว

    I am new to using snort and still learning in university. I am wondering after I find an intrusion how can I log it and save it as a pcap file? What would the syntax look like to do this? So I can analyze it further with Wireshark. Thank you in advance.

  • @airiia4143
    @airiia4143 4 ปีที่แล้ว

    thank you sir i used alot form your tutorials and learn lots things .

  • @chouettedudesert7055
    @chouettedudesert7055 4 ปีที่แล้ว +2

    Very interesting and helpful, thank you !

  • @robertcoyle9071
    @robertcoyle9071 3 ปีที่แล้ว

    I have snort installed but don't know how to configure it yet. This helps.

  • @mohamedko7li
    @mohamedko7li 4 ปีที่แล้ว

    If it s a external attack, i need to put my external ip or internal like on the video in the config file? Snort will show the external ip of the attacker?

  • @anon2030
    @anon2030 3 ปีที่แล้ว

    What’s the best, wireshark or snort?

  • @عدولةكن
    @عدولةكن 2 ปีที่แล้ว

    Hello, I want to use I D S +Stepping stone algorithms to detecy Dos attack?
    Thank you

  • @maximo741
    @maximo741 6 ปีที่แล้ว +6

    Thank you for making this video!

    • @LoiLiangYang
      @LoiLiangYang  6 ปีที่แล้ว +1

      You're welcome. Will be making another one on snort soon.

  • @AnonRonin
    @AnonRonin 3 หลายเดือนก่อน

    do you have tutorials for this on udemy or can you point me to one

  • @Kinoti9
    @Kinoti9 4 ปีที่แล้ว

    That was a pretty smooth tutorial. Nice

  • @nodetrafficsolutioninc8270
    @nodetrafficsolutioninc8270 5 ปีที่แล้ว +1

    its' a very nice explanation brother thanks for the video!

  • @abdulkaderssjemal2073
    @abdulkaderssjemal2073 11 หลายเดือนก่อน

    Hi there,
    I Have tried Snort and Snorby to detect Intrusion on my home network but couldn't get alerts even if I have security issues.Any tips ?

  • @BigstickNick
    @BigstickNick 5 หลายเดือนก่อน

    Do you have a tutorial to set this kind of lab up? Or…know of one?

  • @AKTSR444
    @AKTSR444 4 ปีที่แล้ว

    what is oinkmaster and how to use them?

  • @denniswilliamsjr5646
    @denniswilliamsjr5646 4 ปีที่แล้ว

    Loi Liang Yang why do you use Windows 10?

  • @farishumam5
    @farishumam5 6 ปีที่แล้ว +4

    Hi, thanks for your explanations. do we possible to add Artificial intelligence (AI) combining with snort? what kinds of attack that AI can make snort more adaptive? thanks

    • @LoiLiangYang
      @LoiLiangYang  6 ปีที่แล้ว

      Fantastic question. Will show next time.

  • @pradeepkumarpalanisamy2425
    @pradeepkumarpalanisamy2425 5 ปีที่แล้ว +1

    Thank you for the insight! Excellent Demo.

  • @ahmedw5
    @ahmedw5 5 ปีที่แล้ว

    Excellent and high quality video, thanks!

  • @ZindabadChannel
    @ZindabadChannel 5 ปีที่แล้ว +1

    Hi, Brother I have a topic about "Deep Neural Networks to Improve Intrusion Detection" , Can we say that your this techniques can also be use for my topic.

  • @saidouiazzane2297
    @saidouiazzane2297 4 ปีที่แล้ว

    Good and bref tutorial. Keep it up dude.

  • @faizankhd
    @faizankhd 4 ปีที่แล้ว

    I am ping from attacker ping -p "hexavalue" serverip ,can I detect and log hexa value and alert as well

  • @TeluguHacker
    @TeluguHacker 5 ปีที่แล้ว

    Your channel going viral, please make everyday videos, please.

    • @LoiLiangYang
      @LoiLiangYang  5 ปีที่แล้ว +1

      Thank you for watching. I'm very tied down with my work in real life. Will try my best to give back during the weekends.

    • @TeluguHacker
      @TeluguHacker 5 ปีที่แล้ว

      @@LoiLiangYang u know why I subscribed ur channel 5 days ago that time 5k change ur subscription now its 6k.Thank u. Make more important of people worth videos.

  • @pcinformes1
    @pcinformes1 5 ปีที่แล้ว

    Thanks a lot for your presentation! It was very helpful

  • @trongnhanle7658
    @trongnhanle7658 3 ปีที่แล้ว

    I have a problem : "Cant start DAQ (-1) --> Fatal Error quiting" when i run " sudo snort -A console -q -u snort -c /etc/snort/snort.conf -i enp0s3 ". Can you help me to fix it

  • @Akira29H
    @Akira29H 4 ปีที่แล้ว

    How test a login page of the router at home to be bypass if not using ssl

  • @flyiny_sqiurrel
    @flyiny_sqiurrel 6 หลายเดือนก่อน

    Great video Thanks many time 😊

  • @syedahmedali306
    @syedahmedali306 4 ปีที่แล้ว

    I am getting WARNING: 'aclocal-1.15' is missing on your system. on running sudo make. How to fix it?

  • @dtb7354
    @dtb7354 4 ปีที่แล้ว

    what is the name of the second tool launched? "SPARTA"?

    • @dtb7354
      @dtb7354 4 ปีที่แล้ว +1

      it this one?
      tools.kali.org/information-gathering/sparta

  • @ahmedalsanosi5538
    @ahmedalsanosi5538 6 ปีที่แล้ว

    How can install snort on "raspberry pi 3 model B" but no using arch linux arm..I need different linux distro ..

  • @joenumbi6982
    @joenumbi6982 ปีที่แล้ว

    I'm looking for the way to block an arp spoofing with snort can you show me

  • @bluestar4438
    @bluestar4438 4 ปีที่แล้ว

    it is amazing sir. thank you.

  • @kRaj
    @kRaj 4 ปีที่แล้ว

    Sir you will Termux script PDF and upload in your website. Website link you are video

  • @aiemporium8367
    @aiemporium8367 5 ปีที่แล้ว

    thank you for making this great video...very good explanation ....But i want to clarify it is possible in windows system

    • @LoiLiangYang
      @LoiLiangYang  5 ปีที่แล้ว

      Yes, can be installed on windows as well.

  • @anytimeanywhere3646
    @anytimeanywhere3646 5 ปีที่แล้ว +1

    Thank you for this. Subscribed.

  • @muhammadnoraiz615
    @muhammadnoraiz615 3 ปีที่แล้ว

    how can we deploy snort on entire network of an enterprise ?

  • @a.mamoon1180
    @a.mamoon1180 3 ปีที่แล้ว

    from where can we have the file that you open !

  • @uyscuti5118
    @uyscuti5118 4 ปีที่แล้ว

    Such a great intro video! Thank you!

  • @gabevans087
    @gabevans087 3 ปีที่แล้ว

    great video!!!! easy to follow!!!!!!!!!!!!

  • @Dfath
    @Dfath 5 ปีที่แล้ว +1

    Great explanation! Thank you

  • @alkalinedivide
    @alkalinedivide 5 ปีที่แล้ว

    Hello, I have a wild question if someone could maybe help guide me in the right direction.
    I came across a question that asked something like this:
    What Snort Option is used to Reject Payloads

    • @LoiLiangYang
      @LoiLiangYang  5 ปีที่แล้ว

      You mean filtering away unwanted traffic to be analyzed?

  • @divyanshubanerjee4103
    @divyanshubanerjee4103 6 ปีที่แล้ว

    how to add snort sensor and collect their log via remote banyard2, is it possible to collect multiple snort sensor log at one place

  • @pranavkhavanekar3866
    @pranavkhavanekar3866 3 ปีที่แล้ว

    Hello,
    Can anyone explain me the snort -A -q command?
    what does the -q, -u , -g , -c stands for?

    • @xanvong1501
      @xanvong1501 2 ปีที่แล้ว

      Google => SNORT Cheat sheet
      Or
      On your linux terminal where you installed Snort. Issuing this command line: man snort

  • @georgemavimbela
    @georgemavimbela 5 ปีที่แล้ว

    Thank you so much this is very informative.

  • @kabeersingh1952
    @kabeersingh1952 4 ปีที่แล้ว

    Hello sir, is it possible to unlock iPhone without connecting to pc??

  • @babydoll9898
    @babydoll9898 6 ปีที่แล้ว +1

    Great video sir..
    Can you do a Topic about different IDS, like DIDS using SMS GATEWAY?
    i still learning ^^

    • @LoiLiangYang
      @LoiLiangYang  6 ปีที่แล้ว +1

      Sure, I'm intending to do it this weekend.

    • @babydoll9898
      @babydoll9898 6 ปีที่แล้ว

      I'm really excited for watch your video sir ^^

  • @mouhamedndiaye7758
    @mouhamedndiaye7758 3 ปีที่แล้ว +1

    thank you this video

  • @godfreygodson
    @godfreygodson 3 หลายเดือนก่อน +1

  • @snavejohnz3469
    @snavejohnz3469 5 ปีที่แล้ว

    Very informative content. Following .....

  • @helmanwausaianyimba3636
    @helmanwausaianyimba3636 4 ปีที่แล้ว

    Hi. This was really cool
    I want to work on intrusion detection system as my final year project can you help me?

  • @OMEDcuh
    @OMEDcuh 6 หลายเดือนก่อน

    Now we know, whenever someone is attacking. But what to do against it?

  • @silva0003
    @silva0003 4 ปีที่แล้ว

    Are you saying propel?

  • @javiersolis6327
    @javiersolis6327 5 ปีที่แล้ว +1

    Awesome, thanks for sharing man!

    • @LoiLiangYang
      @LoiLiangYang  5 ปีที่แล้ว

      Welcome. Hope it's useful for you.

  • @jminor318
    @jminor318 3 ปีที่แล้ว

    Thank You for this information !!!

  • @peachyjaee
    @peachyjaee 5 ปีที่แล้ว

    hi. this is a very helpful tutorial! but i get stuck after sudo gedit /etc/snort/snort.confg. can you help me?

    • @LoiLiangYang
      @LoiLiangYang  5 ปีที่แล้ว

      Please elaborate

    • @peachyjaee
      @peachyjaee 5 ปีที่แล้ว

      @@LoiLiangYang when you write the command above supposedly the snort.confg file should appear isn't? but mine it just a blank file.

  • @NitinVerma-qb3jm
    @NitinVerma-qb3jm 3 ปีที่แล้ว

    Hello sir,
    Their is any project for ids using tools.. i humble request please suggest a research based project. I am Mtech Student.

  • @ikrambelabid2131
    @ikrambelabid2131 5 ปีที่แล้ว

    Hello, please how can i test SNORT without having Ubuntu on a virtualbox ?

    • @Black4Craft
      @Black4Craft 5 ปีที่แล้ว

      ikram Belabid It was originally designed for Linux but it was ported to windows If that’s the OS you are running

  • @branckmoelet582
    @branckmoelet582 4 ปีที่แล้ว

    hi!!! im jordan so i want to become It manager. my level is so low to be Hacker. what's i could do?

  • @asifsaad5827
    @asifsaad5827 4 ปีที่แล้ว +1

    one of the best ones ever!!!

  • @muditjain2806
    @muditjain2806 4 ปีที่แล้ว

    What should be network adapter settings of snort machine and kali?

  • @chinmayjain9705
    @chinmayjain9705 2 ปีที่แล้ว

    Thankyou so much 👍👍🙂

  • @konasravani2218
    @konasravani2218 2 ปีที่แล้ว

    How to find network inteface card in snort running on? Anyone know please do reply

  • @kwakukeys8852
    @kwakukeys8852 6 ปีที่แล้ว

    Thank you sir..Can you do a Topic about DMZ ?

  • @falrifal1924
    @falrifal1924 3 ปีที่แล้ว

    please provide a configuration tutorial from the start🙏

  • @MarcosDF15
    @MarcosDF15 4 ปีที่แล้ว

    Amazing my friend thanks so much!

  • @pritonoliver3039
    @pritonoliver3039 4 ปีที่แล้ว

    I want your help

  • @emranemran29
    @emranemran29 6 ปีที่แล้ว

    How to install snort in ubuntu ??

  • @camalmuradov274
    @camalmuradov274 5 ปีที่แล้ว

    wow, your VMs really fast, how did you do it?