Snort mailing list archives

Snort Subscriber Rules Update 2023-06-02


From: Research <research () sourcefire com>
Date: Fri, 2 Jun 2023 20:04:23 GMT

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


Talos Snort Subscriber Rules Update

Synopsis:
This release adds and modifies rules in several categories.

Details:
Talos is releasing Snort2 SIDs 61876-61879, Snort3 SIDs 300582-300583
to protect against webshell activities targeting the MoveIT Transfer
vulnerability currently being exploited in the wild.

Talos has added and modified multiple rules in the malware-backdoor
rule sets to provide coverage for emerging threats from these
technologies.


For a complete list of new and modified rules please see:

https://www.snort.org/advisories
-----BEGIN PGP SIGNATURE-----
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=wMwf
-----END PGP SIGNATURE-----

_______________________________________________
Snort-sigs mailing list
Snort-sigs () lists snort org
https://lists.snort.org/mailman/listinfo/snort-sigs

Please visit http://blog.snort.org for the latest news about Snort!

Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette

Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a 
href=" https://snort.org/downloads/#rule-downloads";>emerging threats</a>!


Current thread: