Sophie

Sophie

distrib > Mandriva > 2006.0 > x86_64 > by-pkgid > 56c5837d9d111437878acba01e4df73e > files > 473

snort-2.3.3-2.3.20060mdk.x86_64.rpm

Rule:  
--
Sid:

1320

--
Summary:
This rule indicates that a webpage was visited the included the content "fuck movies".

--
Impact:
Someone could be violating your company's policy regarding the browsing of inappropriate content.

--
Detailed Information:

This rule looks for a response from a webserver containing "fuck movies".

--
Affected Systems:

All

--
Attack Scenarios:

Not an attack.  

--
Ease of Attack:

N/A.

--
False Positives:

This could have been caused by a pop-up window or spam with an embedded link to a pornographic website.  This could also be caused by somebody visiting the snort rule descriptions on the snort website.  This rule could also be triggered by visiting the website of somebody who really really doesn't like movies.

--
False Negatives:

None known.
--
Corrective Action:

Dependent on your company's policies.   

--
Contributors:
Sourcefire Research Team
Brian Caswell <bmc@sourcefire.com>
Nigel Houghton <nigel.houghton@sourcefire.com>
Snort documentation contributed by Steven Alexander<alexander.s@mccd.edu>
-- 
Additional References:







--