Snort mailing list archives

Snort Subscriber Rules Update 2021-12-17


From: Research <research () sourcefire com>
Date: Sat, 18 Dec 2021 03:58:07 GMT

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


Talos Snort Subscriber Rules Update

Synopsis:
This release adds and modifies rules in several categories.

Details:
Talos is releasing updates to Snort SIDs: 58740-58742 and new Snort
SIDs: 58801-58814 to address CVE-2021-44228/CVE-2021-45046, an RCE
vulnerability in the Apache Log4j API.

Talos has added and modified multiple rules in the
indicator-obfuscation, malware-cnc, policy-other and server-webapp rule
sets to provide coverage for emerging threats from these technologies.


For a complete list of new and modified rules please see:

https://www.snort.org/advisories
-----BEGIN PGP SIGNATURE-----
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=98ql
-----END PGP SIGNATURE-----

_______________________________________________
Snort-sigs mailing list
Snort-sigs () lists snort org
https://lists.snort.org/mailman/listinfo/snort-sigs

Please visit http://blog.snort.org for the latest news about Snort!

Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette

Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a 
href=" https://snort.org/downloads/#rule-downloads";>emerging threats</a>!


Current thread: