About the Rule Signatures category
|
|
0
|
1495
|
September 12, 2022
|
NMAP ruleset are FP?
|
|
1
|
21
|
September 5, 2024
|
DiamotrixClipper
|
|
2
|
64
|
August 30, 2024
|
BadSpace Sigs
|
|
1
|
42
|
August 19, 2024
|
Where to find details on each threat definition?
|
|
1
|
111
|
August 5, 2024
|
Vidar Stealer
|
|
7
|
580
|
July 15, 2024
|
Metastealer v.5 TLS
|
|
6
|
375
|
July 10, 2024
|
Why not leverage Suricata datasets for IoC rules?
|
|
1
|
99
|
July 8, 2024
|
Cryptbot Stealer - Update on Rules
|
|
4
|
540
|
July 5, 2024
|
ET POLICY Reserved Internal IP Traffic
|
|
1
|
120
|
June 24, 2024
|
False positive on rule #2032926
|
|
4
|
132
|
June 23, 2024
|
NjRAT variant - tXRAT v.2.3R
|
|
1
|
155
|
June 21, 2024
|
False positives on hunting rule
|
|
2
|
91
|
June 21, 2024
|
WhiteSnake
|
|
4
|
297
|
June 17, 2024
|
Gh0stRat.Generic SweetSpecter variant
|
|
1
|
89
|
June 13, 2024
|
Privateloader
|
|
2
|
246
|
December 26, 2023
|
ET EXPLOIT Fortinet FortiSIEM Unauthenticated Command Injection CVE-2023-34992
|
|
3
|
170
|
June 3, 2024
|
PrivateLoader Signature
|
|
2
|
158
|
May 20, 2024
|
Lumma Stealer Domain
|
|
4
|
170
|
May 20, 2024
|
New to ET
|
|
3
|
212
|
May 20, 2024
|
SIG: ET TROJAN Atomic macOS (AMOS) Stealer JoinSystem
|
|
3
|
180
|
May 15, 2024
|
SIGS: W32/Badspace.Backdoor
|
|
2
|
1590
|
May 14, 2024
|
DarkGate new version
|
|
5
|
300
|
May 6, 2024
|
SIGS:Kapeka/ICYWELL Backdoor APT44/Sandworm Part 1
|
|
2
|
224
|
April 19, 2024
|
SIGS: Kapeka/ICYWELL Backdoor APT44/Sandworm Part 2
|
|
1
|
136
|
April 18, 2024
|
Snort alerts on 2014-12-15
|
|
0
|
223
|
April 10, 2024
|
Etpro telemetry in opnsense
|
|
1
|
210
|
March 29, 2024
|
FP on 2856495 - "ETPRO HUNTING If-Unmodified-Since Header with Microsoft BITS User-Agent"
|
|
1
|
126
|
March 27, 2024
|
NEW SIG: ET TROJAN Falsefont.Backdoor APT33 Initial Handshake
|
|
1
|
208
|
March 22, 2024
|
Signature: ET TROJAN Possible HijackLoader Second Stage PNG
|
|
5
|
264
|
March 21, 2024
|