Jaime Blasco Blog


sobek-hids: Host Monitoring System
Sat, 20 Jun 2009

I've just created a google code's project with some code I wrote some time ago. Sobek-Hids is a python based Host IDS system capable to monitor:

  • Registry Changes
  • File Activity
  • Process Creation
  • Printing Jobs
  • External Drives (USB Disk Plugs)
  • Shared Resources
  • Windows Accounts
  • Logon
  • Firewall Changes

    I hope I will have the time to continue and improve this couple of scripts.

    You can find it at sobek-hids

    posted at: 20:30 | path: /General | permanent link to this entry | 0 comments |



  • Name:


    E-mail:


    URL:


    Comment:


    Categories

    / (34)
        Attacks/ (2)
        Exploits/ (1)
        General/ (3)
        Lua/ (1)
        Malware/ (3)
        Nessus/ (6)
            cisco/ (1)
            plugins/ (3)
        Ossim/ (9)
        Scada Security/ (2)
        Security Visualization/ (6)
            Malware/ (2)
        Vulnerability Management/ (1)



    Jaime Blasco
    (feel free to get in touch)
    • Mail
    • Linkedin
    • Twitter
    • Linkedin
    • Forums

    Friend's blogs:
    • /blog/dk
    • /blog/juanma
    • /blog/santiago
    • /blog/pablo/




    RSS




    Lecture...





    < June 2009 >
    MoTuWeThFrSaSu
    1 2 3 4 5 6 7
    8 91011121314
    15161718192021
    22232425262728
    2930     




    Archives

    2010-Aug
    2010-Jul
    2010-Mar
    2010-Jan
    2009-Dec
    2009-Oct
    2009-Sep
    2009-Jul
    2009-Jun
    2009-Apr
    2009-Mar
    2009-Feb
    2009-Jan
    2008-Oct
    2008-Aug




    Tags




    Made with PyBlosxom