Writing my first Snort preprocessor
I committed to writing a custom Snort preprocessor as a learning exercise. A weekend later I have a working one. The exercise has taught me more about Snort's internals than any amount of reading.
Long-form thinking on cyber defence, detection, and resilience — from Slackware-era honeypots through to AI-driven SOC analytics.
Showing posts tagged preprocessor — 1 result.
I committed to writing a custom Snort preprocessor as a learning exercise. A weekend later I have a working one. The exercise has taught me more about Snort's internals than any amount of reading.