Snort Subscriber Rules Update 2021-12-17

Research <[email protected]>
Newsgroups gmane.comp.security.ids.snort.sigs
Message-ID <[email protected]>
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


Talos Snort Subscriber Rules Update

Synopsis:
This release adds and modifies rules in several categories.

Details:
Talos is releasing updates to Snort SIDs: 58740-58742 and new Snort
SIDs: 58801-58814 to address CVE-2021-44228/CVE-2021-45046, an RCE
vulnerability in the Apache Log4j API.

Talos has added and modified multiple rules in the
indicator-obfuscation, malware-cnc, policy-other and server-webapp rule
sets to provide coverage for emerging threats from these technologies.


For a complete list of new and modified rules please see:

https://www.snort.org/advisories
-----BEGIN PGP SIGNATURE-----
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=98ql
-----END PGP SIGNATURE-----

_______________________________________________
Snort-sigs mailing list
[email protected]
https://lists.snort.org/mailman/listinfo/snort-sigs

Please visit http://blog.snort.org for the latest news about Snort!

Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette

Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a href=" https://snort.org/downloads/#rule-downloads">emerging threats</a>!
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.