Software Alternatives, Accelerators & Startups

AlienVault OSSIM VS snort

Compare AlienVault OSSIM VS snort and see what are their differences

AlienVault OSSIM logo AlienVault OSSIM

Alienvault integrates and correlates many popular network and security monitoring tools in one...

snort logo snort

Snort is a free and open source network intrusion prevention system.
  • AlienVault OSSIM Landing page
    Landing page //
    2022-11-03
  • snort Landing page
    Landing page //
    2022-06-20

AlienVault OSSIM videos

AlienVault® USM vs. OSSIM™

snort videos

Network Intrusion Detection Systems (SNORT)

More videos:

  • Review - Intrusion Detection System for Windows (SNORT)
  • Review - Massive Beer Review 2692 Bolero Snort Brewing Crushable Hazie IPA

Category Popularity

0-100% (relative to AlienVault OSSIM and snort)
Monitoring Tools
52 52%
48% 48
Security & Privacy
30 30%
70% 70
Cyber Security
0 0%
100% 100
Log Management
100 100%
0% 0

User comments

Share your experience with using AlienVault OSSIM and snort. For example, how are they different and which one is better?
Log in or Post with

Reviews

These are some of the external sources and on-site user reviews we've used to compare AlienVault OSSIM and snort

AlienVault OSSIM Reviews

7 Best Free Open Source SIEM Tools
AlienVault OSSIM This is one of the oldest SIEM systems around but it is very well supported by AT&T, so it is still being improved on solid, reliable code that has been extensively tested in the field. Runs as a virtual appliance.
8 Best Open Source SIEM Tools
OSSIM is one of the most popular open-source SIEM systems that combines other open-source tools that aid security, threat detection, and prevention. It includes key SIEM components such as event collection, processing, and event correlation. Some of OSSIM’s components include Nagios Core for monitoring and alerting, Snort for network intrusion detection and prevention, Munin...
Source: www.logiq.ai
Best Log Management Tools: Useful Tools for Log Management, Monitoring, Analytics, and More
AlientVault USM (Unified Security Management) reaches far beyond the capabilities of SIEM solutions using a powerful AIO (All in One) security precautions and comprehensive threat analysis algorithm to identify threats in your physical or cloud locations. Resource-dependent IT teams that rely on SIEM are at risk of delaying their ability to detect and analyze threats as they...
Source: stackify.com

snort Reviews

8 Best Open Source SIEM Tools
Snort is an open-source intrusion detection and prevention system that you can use for real-time network traffic analysis and packet logging on IP networks. You can also use Snort to detect attacks or possible probes. You can configure Snort to work in three main modes:
Source: www.logiq.ai
The Top 14 Free and Open Source SIEM Tools For 2022
It is also equipped with log analysis capabilities and the ability to display traffic or dump streams of packets to log files. Users have access to a user manual, FAQ file and guides on how to locate and use Oinkcode. Snort has three great uses:
Source: logit.io

Social recommendations and mentions

Based on our record, AlienVault OSSIM should be more popular than snort. It has been mentiond 9 times since March 2021. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.

AlienVault OSSIM mentions (9)

  • SIEM for your own internal network
    You can look at a table with the differences here: Https://cybersecurity.att.com/products/ossim. Source: 11 months ago
  • What do you guys use for networking monitoring
    Another is AT&T's AlienVault OSSIM software. If you can put it on its own hardware, it runs FAR better than it did on a VM in my experience. I've seen this in action and it's a huge monster to get into - I barely scratched the surface and thought I was hitting walls, so it might not be the most intuitive - but I'd recommend watching a few youtube videos to show off what it can do I suppose. Mine set off my... Source: about 1 year ago
  • SIEM solution
    There's also https://cybersecurity.att.com/products/ossim by AlienVault (now AT&T). Source: over 1 year ago
  • Does the BGW320 perform automated SSH vulnerability tests on clients?
    I enabled my ATT security this morning and had a download going that used about 70% of my capacity. I also have an Ubiquiti setup, I don’t believe ATT’s security is as harsh on cpu load that Ubiquiti is. Several years ago, ATT bought Alien Vault which primarily monitors log files and conducts routine vulnerability scans. Since it was purchased, they renamed us as ATT Cybersecurity.... Source: over 2 years ago
  • Top 20 Open-source tools for every Blue Teamer
    As a SIEM system, OSSIM is intended to give security analysts and administrators a more complete view of all the security-related aspects of their system, by combining log management which can be extended with plugins and asset management and discovery with information from dedicated information security controls and detection systems. This information is then correlated together to create contexts to the... Source: over 2 years ago
View more

snort mentions (6)

  • Who does check linux distros of malware - open source
    Linux has (free) tools to improve security and detect/remove malware: Lynis,Chkrootkit,Rkhunter,ClamAV,Vuls,LMD,radare2,Yara,ntopng,maltrail,Snort,Suricata... Source: 5 months ago
  • NETGATE 4100 - Snort Fatal Error on new install
    Okay I figured it out. The problem occurs when you're only using the community rules for Snort. If you go to snort.org and register for a free or subscriber "oink" code, enter the code in pfSense and update the rules then it magically works as expected. My best guess is that unicode information get's added when the new rules are updated. At any rate, this worked for me. Source: about 1 year ago
  • Trying to learn Rogue Device Detection
    Snort (not an insult) https://snort.org/. Source: almost 2 years ago
  • Snort Subscriber Ruleset - Not Downloaded - error code 422 - md5 download failed
    422 supposedly means the requested file doesn't exist, and sure enough if you look on the snort.org rules downloads page there is no file for version 29180. Source: over 2 years ago
  • Unable to Install OpenAppID on Ubuntu Server 18.04
    Where did you get the sourcecode you are building from? The snort3_extra-3.1.0.0.tar.gz package from the snort.org website doesn't have this stuff in appid_listener_event_handler.cc. Source: about 3 years ago
View more

What are some alternatives?

When comparing AlienVault OSSIM and snort, you can also consider the following products

Graylog - Graylog is an open source log management platform for collecting, indexing, and analyzing both structured and unstructured data.

Suricata - Suricata is a high performance Network IDS, IPS and Network Security Monitoring engine.

Logz.io - Logz.io provides log analysis software with alerts, role-based access, unlimited scalability and free ELK apps. Index, search & visualize your log data!

McAfee Network Security Platform - McAfee Network Security Platform guards all your network-connected devices from zero-day and other attacks, with a cost-effective network intrusion prevention system.

Sumo Logic - Sumo Logic is a secure, purpose-built cloud-based machine data analytics service that leverages big data for real-time IT insights

Imunify360 - Imunify360 is a comprehensive security suite for Linux web servers. It includes antivirus, firewall, WAF, PHP Security Layers, Patch Management, Domain reputation with easy UI and advanced automation.