[Zeek-Dev] CIFS/SMB protocol analyzer

Johanna Amann johanna at icir.org
Thu Jan 10 06:39:49 PST 2019


Hi Mauro,

the right person to answer this question is probably seth (added 
directly to cc so it will pop up more prominently for him).

Johanna

On 10 Jan 2019, at 0:33, Mauro Palumbo wrote:

> Hi everybody,
>
>      I am new to zeek/bro. For an internship which will complete a
> master course I have been attending, I will work with zeek and
> specifically with the CIFS/SMB analyzer. After looking at the
> documentation and the code, it seems to me that the this analyzer (as
> available in zeek github master branch) was written in BinPac language
> and only the most used protocol commands are implemented. I could
> possibly work on extending the current implementation of the protocol.
>
> Do you have any thoughts/suggestions about this? Is anyone already 
> doing
> (or planning to do) it?
>
> Best wishes,
>
> Mauro
>
> _______________________________________________
> zeek-dev mailing list
> zeek-dev at zeek.org
> http://mailman.icsi.berkeley.edu/mailman/listinfo/zeek-dev


More information about the zeek-dev mailing list