|
CyberSecure by Proofpoint and Cloudflare - Unifi Intrusion Prevention
|
|
0
|
1288
|
July 17, 2025
|
|
Detection Exercise: D-Link DIR-513 (CVEs: 2025-8184, 8169, and 8168)
|
|
0
|
272
|
August 2, 2025
|
|
Come Sail the CVEs Part 1: Data Acquisition
|
|
2
|
637
|
July 10, 2025
|
|
Double Firewall Hopping with PfSense
|
|
0
|
309
|
June 7, 2025
|
|
Http.dottedquadhost and you
|
|
2
|
516
|
July 1, 2025
|
|
AURA stealer
|
|
7
|
244
|
November 25, 2025
|
|
Discuss about the rule 2012091: No Offset UDP Shellcode"; content:"|E8 00 00 00 00 0F 1A|"
|
|
4
|
207
|
May 6, 2025
|
|
SIGS: ET HUNTING Possible Obfuscated PowerShell Script Download
|
|
2
|
125
|
May 19, 2025
|
|
Commented Out Rules
|
|
2
|
118
|
May 7, 2025
|
|
False Positive 2065016 ET TROJAN BPFDoor Heartbeat (Outbound)
|
|
2
|
196
|
October 6, 2025
|
|
SIG: Suspicious File Delivery from Cloudflare Family Host
|
|
7
|
125
|
April 10, 2026
|
|
SIGS: TerraStealerV2
|
|
2
|
99
|
May 2, 2025
|
|
SIG: ET MALWARE Possible Gremlin InfoStealer Data Upload
|
|
2
|
98
|
April 29, 2025
|
|
Mislabelled CVE in Emerging Threats Rule sid:2063646
|
|
1
|
106
|
July 24, 2025
|
|
False family: renaming rules from Lumma stealer to GCleaner loader
|
|
1
|
93
|
September 8, 2025
|
|
Phishing / Crypto Wallet Drainer - psyopanime.net
|
|
2
|
108
|
January 15, 2026
|
|
SIGS: PoC for Axios NPM package supply chain compromise
|
|
3
|
93
|
April 1, 2026
|
|
Rule Performance and QA
|
|
0
|
194
|
September 9, 2025
|
|
ET MALWARE JavaScript Loader Associated With Interlock Ransomware
|
|
1
|
114
|
May 12, 2025
|
|
Games and Myths: Mythstealer Spotted in the Wild
|
|
1
|
287
|
July 1, 2025
|
|
Operating in the Margins - Experimenting with Suricata Features
|
|
0
|
121
|
February 20, 2026
|
|
Rule categories in emerging-all.rules & etpro-all.rules
|
|
1
|
81
|
January 12, 2026
|
|
Ruleset Update Summary - 2025/07/26 - v10979
|
|
0
|
87
|
July 26, 2025
|
|
Closer cooperation between OPNsense and Suricata – TLS traffic decryption discussion
|
|
0
|
78
|
December 24, 2025
|
|
Wrong malware family attribution 123Stealer
|
|
1
|
60
|
January 15, 2026
|
|
Possibly incorrect domain for ET ADWARE_PUP signature
|
|
2
|
50
|
February 25, 2026
|
|
False Positive Report for ET JA3 Rule 2028802 (Possible Adware blocking TV streaming)
|
|
1
|
55
|
December 15, 2025
|
|
Come Sail the CVEs Part 2: Turning Data Into Rules
|
|
0
|
426
|
May 21, 2025
|
|
Cybersecurity Awareness Month - IoT and SOHO devices
|
|
0
|
397
|
October 28, 2025
|
|
Idea for new rules
|
|
0
|
64
|
February 4, 2026
|
|
External IP Lookup Rules
|
|
1
|
242
|
June 20, 2025
|
|
False positive on google.com.onion AP check
|
|
2
|
196
|
December 2, 2025
|
|
False positive for 2067921 ET MALWARE PureLogs Stealer CnC ping Request
|
|
2
|
193
|
February 27, 2026
|
|
SIGS: ET MALWARE Skitnet/Bossnet Backdoor DNS TXT
|
|
2
|
109
|
May 23, 2025
|
|
SIGS: CastleLoader/RAT
|
|
5
|
147
|
December 19, 2025
|
|
I want advice on Writing Better Detection Rules
|
|
3
|
124
|
September 2, 2025
|
|
Ruleset Update Summary - 2025/06/03 - v10939
|
|
0
|
303
|
June 3, 2025
|
|
Cyber Security Awareness Month - Web Browser Security
|
|
0
|
341
|
October 3, 2025
|
|
Ruleset Update Summary - 2025/07/09 - v10966
|
|
0
|
257
|
July 9, 2025
|
|
IoT Hunter Public Release
|
|
0
|
302
|
September 10, 2025
|
|
SIG: ET HUNTING Possible JSFireTruck JavaScript Obfuscation
|
|
2
|
172
|
July 14, 2025
|
|
Ruleset Update Summary - 2025/09/16 - v11016
|
|
0
|
233
|
September 16, 2025
|
|
Ruleset Update Summary - 2025/05/28 - v10935
|
|
0
|
234
|
May 28, 2025
|
|
Mislabelled CVE in Emerging Threats Rule sid:2029154, 2029155
|
|
1
|
93
|
September 29, 2025
|
|
Ruleset Update Summary - 2025/12/05 - v11077
|
|
0
|
226
|
December 5, 2025
|
|
SIGS: ET TROJAN MuddyWatter HTTP_VIP Backdoor
|
|
1
|
82
|
March 4, 2026
|
|
SIG: ET MALWARE Gamaredon TryCloudFlare Activity - Known Delimiter in User-Agent
|
|
1
|
87
|
May 22, 2025
|
|
Ruleset Update Summary - 2025/05/30 - v10937
|
|
0
|
211
|
May 30, 2025
|
|
Ruleset Update Summary - 2025/09/16 - v11017
|
|
0
|
194
|
September 16, 2025
|
|
SIG: ET MALWARE Possible Mints.Loader GET Request
|
|
2
|
70
|
April 29, 2025
|