On Sunday I wrote about TurboSnortRules.org. Today I saw a post to snort-users asking if anyone had rules to detect W32. One response recommended checking Bleeding Snort new rules. Looking there I found WORM_Mytob rules in a Web-browsable CVS format. I submitted the first rule after removing the classtype field, as TSR doesn’t support it. As I learn what I can share about upcoming project developments, I will post word here.”]
Source: https://taosecurity.blogspot.com/2005/06/testing-new-rules-with-turbosnortrules.html

