copilot
copilot copied to clipboard
Create Plugin for Byte-Sequence Matching
- actions = block
- targets should list the protocol, and not the actual byte sequence.
- implementation should be done with an existing IDS (Bro, Snort, yaf, etc.)
- We need to find a very lightweight system for this