SCADA Forensics with Snort IDS
Craig Valli · Australasian Journal of Paramedicine · 2009
This paper is a research in progress paper outlining an approach using open source IDS (Snort) and honeypot (nepenthes, honeyd) technologies to create a resilient layered defensive approach for SCADA and control systems networks.