About the Rule Signatures category
|
|
0
|
1695
|
September 12, 2022
|
ET INFO PE EXE or DLL Windows file download HTTP (2018959), and Recent Tuning
|
|
0
|
94
|
January 17, 2025
|
ET MALWARE Gamaredon.APT TryCloudFlare Activity
|
|
2
|
74
|
January 7, 2025
|
The Many CVEs of D-Link HNAP Command Injection
|
|
0
|
86
|
January 2, 2025
|
ET SCAN ELF/Mirai Variant
|
|
2
|
74
|
December 31, 2024
|
SIGS: Zloader
|
|
2
|
96
|
December 17, 2024
|
SIG: TryCloudFlare in SNI
|
|
1
|
62
|
December 10, 2024
|
ET TROJAN Win32/BugSleep CnC Checkin
|
|
4
|
269
|
November 2, 2024
|
SIGS: Android/TrickMo.Banker
|
|
2
|
58
|
October 29, 2024
|
Ailurophile Stealer
|
|
1
|
142
|
October 28, 2024
|
Signature Mints Loader
|
|
1
|
78
|
October 25, 2024
|
Privateloader
|
|
5
|
361
|
October 14, 2024
|
[False Positive] ET INFO domain VirusTotal
|
|
1
|
94
|
October 14, 2024
|
PortStarter Backdoor Sigs
|
|
1
|
46
|
October 10, 2024
|
Grimresource transformNode Obfuscation
|
|
5
|
84
|
October 10, 2024
|
Signature: CleanUp Loader
|
|
2
|
75
|
October 9, 2024
|
Sid:2055984 Ivanti Cloud Service Appliance Authenticated Command Injection (CVE-2024-8190)
|
|
1
|
100
|
October 1, 2024
|
Poverty Stealer
|
|
12
|
890
|
September 17, 2024
|
FP? NanoLocker - SID: 2022331
|
|
1
|
63
|
September 12, 2024
|
NMAP ruleset are FP?
|
|
1
|
80
|
September 5, 2024
|
DiamotrixClipper
|
|
2
|
190
|
August 30, 2024
|
BadSpace Sigs
|
|
1
|
55
|
August 19, 2024
|
Where to find details on each threat definition?
|
|
1
|
183
|
August 5, 2024
|
Vidar Stealer
|
|
7
|
606
|
July 15, 2024
|
Metastealer v.5 TLS
|
|
6
|
454
|
July 10, 2024
|
Why not leverage Suricata datasets for IoC rules?
|
|
1
|
121
|
July 8, 2024
|
Cryptbot Stealer - Update on Rules
|
|
4
|
585
|
July 5, 2024
|
ET POLICY Reserved Internal IP Traffic
|
|
1
|
250
|
June 24, 2024
|
False positive on rule #2032926
|
|
4
|
150
|
June 23, 2024
|
NjRAT variant - tXRAT v.2.3R
|
|
1
|
182
|
June 21, 2024
|