📄 hacking
字号:
HACKING======= Welcome to the HACKING file. This file is a scratch area for my notes. It contains various goals I have for firestorm. If you want to contribute to firestorm but aren't sure how, this is the place to start.API CLEANUPS============ Matchers should be registered on to protocols. Most APIs could be more efficient and more object oriented.BUILD SYSTEM============ Find someone who can build and test debian packages. test suite: write oneDOCUMENTATION============= User documentation always needs work. Hacker manual / API docsOUTSTANDING BUGS================ TCP stream reassembly (MAJOR PRIORITY!)CORE / SUPPORT============== Put usage strings in to capdevs and preprocs Use syslog instead of custom logfile?PACKET AQUISITION================= NETLINK/ULOG capture modules More OS specific capture modules Detect MTUs in order to select buffer sizes... Allow setting of promiscuous mode Split capdev->init in to two parts to minimise what is done as root Use ringbuffers for capturesDECODE ENGINE============= Alert on unicast IGMP membership reports Token ring/FDDI IPv6 ATM PPP(oE|oA) ? Track related streams in tcpstreamATTACK DETECTION================ Statistical anomaly detection Portscan detection Passive OS fingerprint Passive portscanning Passive netBIOS,CDP,etc. information gathering IrDA device logging Bandwidth monitoring Signature parsing could be more efficientALERTING======== Support multiple alert spools Black-box mode / Tagging Give higher cost to lower priority alertsCONSOLE======= See: doc/console-mkI
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -