Sourcefire Vulnerability Research Team (VRT)

VRT Rules · VRT Advisories · VRT Papers · VRT Rants · VRT Tools · VRT Wishlist
Sourcefire VRT White Papers
Title Synopsis
VRT Report on the DCE/RPC vulnerability in MS08-067 Takes a closer look at the DCE/RPC vulnerability in MS08-067 and the associated malware that uses this as an attack vector.
VRT Report on Dan Kaminsky's 2008 DNS Vulnerability Explores the DNS Vulnerability as presented by Dan Kaminisky in 2008 and suggests methods for detection using snort rules.
Sourcefire VRT Explores the VRT rule writing methodology and how this ties in to Sourcefire products
Performance Rule Creation (webinar 1 - 2008-06-04 Matthew Olney of the Sourcefire VRT gives a presentation on Snort architecture and writing rules to take advantage of the advanced detection features available in Snort. This is part one of a two part webinar series.
Performance Rule Creation (webinar 2 - 2008-09-17 Matthew Olney of the Sourcefire VRT gives a presentation on Snort architecture and writing rules to take advantage of the advanced detection features available in Snort. This is part two of a two part webinar series.