April 20, 2023, 7:28 p.m. | Mohamed Ashraf

System Weakness - Medium systemweakness.com

TryHackMe | Snort Challenge — The Basics — Walkthrough

Task 1: introduction

Read through the information and click Submit.

Task 2: Writing IDS Rules (HTTP)

Q1: Write rules to detect “all TCP port 80 traffic” packets in the given pcap file.

I created the following two rules inside of local.rules to identify any packets inbound or outbound.
snort rules for port 80 traffic
alert tcp any any <> any 80 (msg: “found”; sid: 100001; rev:1;)
alert tcp any 80 <> …

basics challenge cybersecurity snort soc analyst tryhackme tryhackme-walkthrough

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC