<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="wordpress/2.1.3" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

<channel>
	<title>OSSEC Home</title>
	<link>http://www.ossec.net/main</link>
	<description>OSSEC's Home</description>
	<pubDate>Thu, 01 May 2008 16:54:05 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.1.3</generator>
	<language>en</language>
			<item>
		<title>OSSEC v1.5 released</title>
		<link>http://www.ossec.net/main/ossec-v15-released</link>
		<comments>http://www.ossec.net/main/ossec-v15-released#comments</comments>
		<pubDate>Thu, 01 May 2008 15:22:08 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[news]]></category>

		<guid isPermaLink="false">http://www.ossec.net/main/ossec-v15-released</guid>
		<description><![CDATA[We are very pleased to announce the general availability of OSSEC version 1.5. This version comes with lots of bug fixes and new features, including:
-New log formats (info):

Solaris BSM auditing logs
Asterisk logs
Checkpoint and Smart Defense logs
Debian package (dpkg) install/status/remove messages
Shorewall logs
Postfix SASL error messages
Localized pure-ftpd messages (for 12 different languages)
DJB multilog

-Greek translation of the install.
-Added [...]]]></description>
			<content:encoded><![CDATA[<p>We are very pleased to announce the general availability of OSSEC <a href="http://www.ossec.net/main/downloads/">version 1.5</a>. This version comes with lots of bug fixes and new features, including:</p>
<p>-New log formats (<a href="http://www.ossec.net/dcid/?p=132">info</a>):</p>
<ul>
<li>Solaris BSM auditing logs</li>
<li>Asterisk logs</li>
<li>Checkpoint and Smart Defense logs</li>
<li>Debian package (dpkg) install/status/remove messages</li>
<li>Shorewall logs</li>
<li>Postfix SASL error messages</li>
<li>Localized pure-ftpd messages (for 12 different languages)</li>
<li>DJB multilog</li>
</ul>
<p>-Greek translation of the install.</p>
<p>-Added agent_control tool to manage the agents directly from the server (<a href="http://www.ossec.net/dcid/?p=130">info</a>).</p>
<p>-New options to syscheckd/rootcheckd to better schedule the scans (<a href="http://www.ossec.net/dcid/?p=131">info</a>).</p>
<p>-Performance improvements to the Windows Agent, specially when dealing with<br />
large event logs.</p>
<p>-Added new options to Rootcheck to look for common web exploits installed<br />
on the system (used to attack others).</p>
<p>Check the <a href="http://www.ossec.net/announcements/v1.5-2008-05-02.txt">v1.5 Changelog</a> to see all the changes and contributors.</p>
<p>Download it from: <a href="http://www.ossec.net/main/downloads">http://www.ossec.net/main/downloads</a> .</p>
<p><em>Special thanks to Martin West, Sebastien Tricaud, Giannis Vrentzos, Sandro Gauci, Michael Starks, Cedric Bleimling, Dean Takemori and Dennis Golden for the contributions and John Lewis, Daniel Medianero, John Ives and  Derek Morris for beta testing this release.</em></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ossec.net/main/ossec-v15-released/feed/</wfw:commentRss>
		</item>
		<item>
		<title>OSSEC at The Academy</title>
		<link>http://www.ossec.net/main/ossec-at-the-academy</link>
		<comments>http://www.ossec.net/main/ossec-at-the-academy#comments</comments>
		<pubDate>Wed, 26 Mar 2008 13:34:58 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[news]]></category>

		<guid isPermaLink="false">http://www.ossec.net/main/ossec-at-the-academy</guid>
		<description><![CDATA[The OSSEC project is now an official partner/sponsor of the The Academy.
They already have videos showing how to install OSSEC (on Unix and Windows) and will be giving away a copy of the new OSSEC book to one of their registered users. More information at their site.
About The Academy:
The Academy is a web site willing [...]]]></description>
			<content:encoded><![CDATA[<p>The <a href="http://www.ossec.net">OSSEC</a> project is now an official partner/sponsor of the <a href="http://www.theacademy.ca">The Academy</a>.</p>
<p>They already have <a href="http://www.theacademy.ca/index.php?option=com_seyret&#038;Itemid=110&#038;task=videodirectlink&#038;id=56">videos</a> showing how to install OSSEC (on Unix and Windows) and will be giving away a copy of the new <a href="http://www.amazon.com/OSSEC-Host-Based-Intrusion-Detection-Guide/dp/159749240X">OSSEC book</a> to one of their registered users. More information at their <a href="http://www.theacademy.ca/index.php?option=com_content&#038;task=view&#038;id=31&#038;Itemid=135">site</a>.</p>
<p><strong>About The Academy:</strong><br />
<a href="http://www.theacademy.ca">The Academy</a> is a web site willing to provide instructional videos for the information security community. For the first time ever, the average user to the most seasoned industry expert will be able to watch instructional videos on how to install popular products, address common configuration issues, and troubleshoot difficult problems. The Academy is a user driven community and videos are created at the request of its members. Vendors can also leverage the site to showcase the features and capabilities of their products. The Academy is an ideal place to find and share knowledge with others practicing or interested in the information security field.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.ossec.net/main/ossec-at-the-academy/feed/</wfw:commentRss>
		</item>
		<item>
		<title>OSSEC Book</title>
		<link>http://www.ossec.net/main/ossec-book</link>
		<comments>http://www.ossec.net/main/ossec-book#comments</comments>
		<pubDate>Fri, 21 Mar 2008 13:52:25 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[news]]></category>

		<guid isPermaLink="false">http://www.ossec.net/main/ossec-book</guid>
		<description><![CDATA[The first OSSEC book (OSSEC Host-Based Intrusion Detection Guide) is officially out and available on the best bookstores. You can also buy it online at amazon.
About the book:
This book is the definitive guide on the OSSEC Host-based Intrusion Detection system and frankly, to really use OSSEC you are going to need a definitive guide. Documentation [...]]]></description>
			<content:encoded><![CDATA[<p>The first <a href="http://www.ossec.net">OSSEC</a> book (<em>OSSEC Host-Based Intrusion Detection Guide</em>) is officially out and available on the best bookstores. You can also buy it online at <a href="http://www.amazon.com/OSSEC-Host-Based-Intrusion-Detection-Guide/dp/159749240X">amazon</a>.</p>
<p><strong>About the book:</strong></p>
<p>This book is the definitive guide on the OSSEC Host-based Intrusion Detection system and frankly, to really use OSSEC you are going to need a definitive guide. Documentation has been available since the start of the OSSEC project but, due to time constraints, no formal book has been created to outline the various features and functions of the OSSEC product. This has left very important and powerful features of the product undocumented&#8230;until now! The book you are holding will show you how to install and configure OSSEC on the operating system of your choice and provide detailed examples to help prevent and mitigate attacks on your systems.<br />
<i>&#8211; Stephen Northcutt</i></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ossec.net/main/ossec-book/feed/</wfw:commentRss>
		</item>
		<item>
		<title>OSSEC Web UI v0.3 available</title>
		<link>http://www.ossec.net/main/ossec-web-ui-v03-available</link>
		<comments>http://www.ossec.net/main/ossec-web-ui-v03-available#comments</comments>
		<pubDate>Wed, 05 Mar 2008 14:58:16 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[news]]></category>

		<guid isPermaLink="false">http://www.ossec.net/main/ossec-web-ui-v03-available</guid>
		<description><![CDATA[We are pleased to announce the public availability of OSSEC Web UI (oswui) version 0.3. This new version comes with a new design, lots of bug fixes, speed improvements and a major code reorganization. Some of the bugs fixed include: 67. 89. 90, 91, 103, 114-117 from our bugzilla.
Installation instructions available at: Wiki OSSECWUI:Install
Download it [...]]]></description>
			<content:encoded><![CDATA[<p>We are pleased to announce the public availability of OSSEC Web UI (oswui) <a href="/main/downloads">version 0.3</a>. This new version comes with a new design, lots of bug fixes, speed improvements and a major code reorganization. Some of the bugs fixed include: 67. 89. 90, 91, 103, 114-117 from our <a href="http://www.ossec.net/bugs/">bugzilla</a>.</p>
<p>Installation instructions available at: <a href="/wiki/index.php/OSSECWUI:Install">Wiki OSSECWUI:Install</a></p>
<p>Download it at: <a href="/main/downloads">Downloads page</a>.</p>
<p><em>Special thanks to Chris Abernethy for the huge contributions and Daniel Medianero and Liliane Cid for beta testing this new version.</em></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ossec.net/main/ossec-web-ui-v03-available/feed/</wfw:commentRss>
		</item>
		<item>
		<title>OSSEC v1.4 released</title>
		<link>http://www.ossec.net/main/ossec-v14-released</link>
		<comments>http://www.ossec.net/main/ossec-v14-released#comments</comments>
		<pubDate>Tue, 30 Oct 2007 02:53:46 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[news]]></category>

		<guid isPermaLink="false">http://www.ossec.net/main/ossec-v14-released</guid>
		<description><![CDATA[We are pleased to announce the general availability of OSSEC version 1.4. This
version comes with the following major new features:

Support for reading database logs from PostgreSQL and MySQL (info)
Support for Prelude (info)
Support for storing the alerts on MySQL and PostgreSQL (info)
Support for Sonicwall logs, HP-UX ftpd, AIX 5.3 syslog ,etc

Plus lots of bug fixes and [...]]]></description>
			<content:encoded><![CDATA[<p>We are pleased to announce the general availability of OSSEC <a href="/main/downloads">version 1.4</a>. This<br />
version comes with the following major new features:</p>
<ul>
<li>Support for reading database logs from PostgreSQL and MySQL (<a href="http://www.ossec.net/wiki/index.php/SQL_Logging">info</a>)</li>
<li>Support for <a href="http://www.prelude-ids.org">Prelude</a> (<a href="http://www.ossec.net/wiki/index.php/Know_How:PreludeOutput">info</a>)</li>
<li>Support for storing the alerts on MySQL and PostgreSQL (<a href="http://www.ossec.net/wiki/index.php/Know_How:DatabaseOutput">info</a>)</li>
<li>Support for Sonicwall logs, HP-UX ftpd, AIX 5.3 syslog ,etc</li>
</ul>
<p>Plus lots of bug fixes and small improvements. Check the <a href="/announcements/v1.4-2007-10-30.txt">v1.4 changelog</a> to see all changes and contributors.</p>
<p><em>Special thanks to Michael Starks, Jeff Schroeder, Steve West, Tom Bicer, Peter M. Abraham, Colby W., Slava Semushin, Sebastien Tricaud, Leonardo Goldim, Trey Valenta, Dustin Lenz and Chris Abernethy for the contributions and John Ives, Rick McClinton, Paul Sebastian Ziegler, Daniel Medianero and Liliane Cid for beta testing this release.</em></p>
<p><a href="/main/downloads">Download it in here</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.ossec.net/main/ossec-v14-released/feed/</wfw:commentRss>
		</item>
		<item>
		<title>OSSEC at AusCERT</title>
		<link>http://www.ossec.net/main/ossec-at-auscertconfidence</link>
		<comments>http://www.ossec.net/main/ossec-at-auscertconfidence#comments</comments>
		<pubDate>Fri, 01 Jun 2007 22:45:32 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[news]]></category>

		<guid isPermaLink="false">http://www.ossec.net/main/ossec-at-auscertconfidence</guid>
		<description><![CDATA[During the month of May Daniel Cid went to AusCERT and Confidence to talk about OSSEC (i.e. Log analysis using OSSEC). On both presentations he mentioned LIDS (Log-Based intrusion detection), and provided an overview of the ossec architecture and how to write decoders and rules.
If you want to learn a bit more about ossec, take [...]]]></description>
			<content:encoded><![CDATA[<p>During the month of May <a href="http://ossec.net/wiki/index.php/User:Dcid" title="User:Dcid">Daniel Cid</a> went to <a href="http://conference.auscert.org.au/conf2007/" title="http://conference.auscert.org.au/conf2007/">AusCERT</a> and <a href="http://2007.confidence.org.pl/" title="http://2007.confidence.org.pl/">Confidence</a> to talk about <a href="http://ossec.net/wiki/index.php/OSSEC" title="OSSEC">OSSEC</a> (i.e. Log analysis using OSSEC). On both presentations he mentioned LIDS (Log-Based intrusion detection), and provided an overview of the ossec architecture and how to write decoders and rules.</p>
<p>If you want to learn a bit more about ossec, take a look at them.<br />
<em>**Note that both presentations are very similar, but AusCERT&#8217;s is a bit more organized, so recommended to be read first.</em></p>
<ul>
<li><a href="http://www.ossec.net/ossec-docs/auscert-2007-dcid.pdf" class="external text" title="http://www.ossec.net/ossec-docs/auscert-2007-dcid.pdf" rel="nofollow">OSSEC at AusCERT (Log-based Intrusion detection using OSSEC)</a>.</li>
<li><a href="http://www.ossec.net/ossec-docs/conf2007-dcid.pdf" class="external text" title="http://www.ossec.net/ossec-docs/conf2007-dcid.pdf" rel="nofollow">OSSEC at Confidence (Log analysis using OSSEC)</a>.</li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://www.ossec.net/main/ossec-at-auscertconfidence/feed/</wfw:commentRss>
		</item>
		<item>
		<title>OSSEC #1 tool by LinuxWorld</title>
		<link>http://www.ossec.net/main/ossec-1-security-tool-on-linux-world</link>
		<comments>http://www.ossec.net/main/ossec-1-security-tool-on-linux-world#comments</comments>
		<pubDate>Sat, 03 Mar 2007 19:35:11 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[news]]></category>

		<guid isPermaLink="false">http://www.ossec.net/main/ossec-1-security-tool-on-linux-world</guid>
		<description><![CDATA[LinuxWorld released the article Top 5 open source security tools in the enterprise and OSSEC was chosen number 1.
 With thousands of open source security packages available, choices can be confusing. Here&#8217;s the short list of tools that are getting real-world successful deployments.
..
I’ve selected OSSEC HIDS as the No. 1 open source tool due to [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.linuxworld.com">LinuxWorld</a> released the article <a href="http://www.linuxworld.com/news/2007/031207-top-5-security.html">Top 5 open source security tools in the enterprise</a> and OSSEC was chosen number 1.</p>
<blockquote><p> With thousands of open source security packages available, choices can be confusing. Here&#8217;s the short list of tools that are getting real-world successful deployments.<br />
..<br />
I’ve selected OSSEC HIDS as the No. 1 open source tool due to its recent rapid growth in the enterprise. OSSEC HIDS is a rapidly evolving open source project that offers the first ever open source host intrusion detection and prevention system, developed by Daniel Cid. The OSSEC HIDS project has been gaining widespread use and is quickly being deployed within organizations around the world as a method of protecting systems at the host level after attacks have made it past network defenses.</p>
<p>The OSSEC HIDS project team has ported the tool to all major operating system platforms including Windows, MacOSX, HP-UX, Solaris, FreeBSD, OpenBSD and Linux.</p></blockquote>
<p>Full article <a href="http://www.linuxworld.com/news/2007/031207-top-5-security.html">here</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.ossec.net/main/ossec-1-security-tool-on-linux-world/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>
