csf.blocklists - Invalid URL for Russian Business Networks
Posted: 05 Apr 2014, 17:41
Hello,
The URL in csf.blocklists is invalid:
I went through the EmergingThreats website and found these links which may be of interest:
Detail: http://doc.emergingthreats.net/bin/view ... essNetwork - lists a number of links to text files which contain ips.
http://doc.emergingthreats.net/pub/Main ... orkIPs.txt - last update seems to be February 2012 so not sure how accurate this list would be over two years on. There's no date in the list itself so I don't know if the list is current and it's just the detail page that's out of date.
The only IP lists I could find in the rules subdomain were these two which both have a last update of April 3, 2014:
Detail: http://doc.emergingthreats.net/bin/view ... omisedHost - seems to be a compilation of Brute Force Blocker and OpenBL and possibly others which are already covered separately in csf.blocklists.
http://rules.emergingthreats.net/blockr ... ed-ips.txt
No detail page for this one:
http://rules.emergingthreats.net/fwrule ... ck-IPs.txt - seems to be a compilation of Shadowserver C&C and DShield . Shadowserver's website states that it "does not create, maintain, or distribute any blacklists." So perhaps the Shadowserver part of this list might be worthy of inclusion in CSF.
Terry
The URL in csf.blocklists is invalid:
Code: Select all
#RBN|86400|0|http://rules.emergingthreats.net/blockrules/rbn-ips.txt
Detail: http://doc.emergingthreats.net/bin/view ... essNetwork - lists a number of links to text files which contain ips.
http://doc.emergingthreats.net/pub/Main ... orkIPs.txt - last update seems to be February 2012 so not sure how accurate this list would be over two years on. There's no date in the list itself so I don't know if the list is current and it's just the detail page that's out of date.
The only IP lists I could find in the rules subdomain were these two which both have a last update of April 3, 2014:
Detail: http://doc.emergingthreats.net/bin/view ... omisedHost - seems to be a compilation of Brute Force Blocker and OpenBL and possibly others which are already covered separately in csf.blocklists.
http://rules.emergingthreats.net/blockr ... ed-ips.txt
No detail page for this one:
http://rules.emergingthreats.net/fwrule ... ck-IPs.txt - seems to be a compilation of Shadowserver C&C and DShield . Shadowserver's website states that it "does not create, maintain, or distribute any blacklists." So perhaps the Shadowserver part of this list might be worthy of inclusion in CSF.
Terry