Ruleset Update Summary - 2023/07/24 - v10378

Summary:

2 new OPEN, 8 new PRO (2 + 6)

Thanks @h2jazi, @jaydinbas, @Jane_0sint, @g0njxa


Added rules:

Open:

  • 2046885 - ET WEB_SPECIFIC_APPS Citrix/Netscaler ADC and NetScaler Gateway RCE Attempt CVE-2023-3519 (web_specific_apps.rules)
  • 2046886 - ET MALWARE Win32/Cryptbot CnC Activity (POST) (malware.rules)

Pro:

  • 2854909 - ETPRO MALWARE Fake Browser Update Domain in DNS Lookup (malware.rules)
  • 2854910 - ETPRO MALWARE Fake Browser Update Domain in DNS Lookup (malware.rules)
  • 2854911 - ETPRO MALWARE Fake Browser Update Domain in DNS Lookup (malware.rules)
  • 2854912 - ETPRO MALWARE Fake Browser Update Domain in TLS SNI (malware.rules)
  • 2854913 - ETPRO MALWARE Fake Browser Update Domain in TLS SNI (malware.rules)
  • 2854914 - ETPRO MALWARE Fake Browser Update Domain in TLS SNI (malware.rules)