Snort Subscriber Rules Update 2021-12-15

Research <[email protected]>
Newsgroups gmane.comp.security.ids.snort.sigs
Message-ID <[email protected]>
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


Talos Snort Subscriber Rules Update

Synopsis:
This release adds and modifies rules in several categories.

Details:
Talos is releasing updates to Snort 2 SIDs: 58722-58744, 58751,
58784-58790 and a new Snort 2 SID: 58795 to address
CVE-2021-44228/CVE-2021-45046, an RCE vulnerability in the Apache Log4j
API.

Talos also has added and modified multiple rules in the malware-cnc,
malware-other and server-webapp rule sets to provide coverage for
emerging threats from these technologies.


For a complete list of new and modified rules please see:

https://www.snort.org/advisories
-----BEGIN PGP SIGNATURE-----
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=chWC
-----END PGP SIGNATURE-----

_______________________________________________
Snort-sigs mailing list
[email protected]
https://lists.snort.org/mailman/listinfo/snort-sigs

Please visit http://blog.snort.org for the latest news about Snort!

Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette

Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a href=" https://snort.org/downloads/#rule-downloads">emerging threats</a>!
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.