Mole IDS Initial Release - Beta
This release is considered a Beta version.
Main features
- Capture traffic using the PF_Ring driver
- Filter traffic using BPF filters
- Yara as engine detection
- Advance Yara metadata syntax, that allows to define the packet matching pattern
- Application logger
- Alert logger
- Import Yara rules even from an Yara index file or directory with a bunch of Yara files