Hacker News new | past | comments | ask | show | jobs | submit login

The second wave is likely when public port scanning services such as shodan re-scan your host. (I wonder how hard it would be to fingerprint and subsequently blackhole shodan et al's scanning traffic)



Like an IDS or IPS? Snort is quite decent at that.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: