ET-3270
📛 Threat Title
Ruleset Update Summary - 2026/04/23 - v11178
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (1)
- Ruleset Update Summary - 2026/04/23 - v11178 Emerging Threats Community
Remediations (8)
-
web:community.emergingthreats.net
Ruleset Updates 0 177 June 10, 2024 Ruleset Update Summary - 2025/07/29 - v10981 Ruleset Updates 0 91 July 29, 2025 Ruleset Update Summary - 2026/04/23 - v11178 Ruleset Updates 0 67 April 23, 2026 Ruleset Update Summary - 2024/11/04 - v10734 Ruleset Updates 0 132 November 4, 2024 Ruleset Update Summary - 2025/06/26 - v10958 Ruleset Updates 0 ...
-
web:community.emergingthreats.net
Summary : 18 new OPEN, 156 new PRO (18 + 138) Added rules: Open: 2068937 - ET EXPLOIT_KIT LandUpdate808 Domain in DNS Lookup (okunevk .com) (exploit_kit.rules) 2068938 - ET EXPLOIT_KIT LandUpdate808 Domain in DNS Lookup (wintseiser .com) (exploit_kit.rules) 2068939 - ET EXPLOIT_KIT LandUpdate808 Domain in TLS SNI (okunevk .com) (exploit_kit.rules) 2068940 - ET EXPLOIT_KIT LandUpdate808 Domain ...
-
web:learn.microsoft.com
The bot mitigation ruleset list of known bad IP addresses updates multiple times per day from the Microsoft Threat Intelligence feed to stay in sync with the bots.
-
web:learn.microsoft.com
Learn how to detect and limit or disable RC4 usage in Kerberos to enhance security in Active Directory domain environments.
-
web:msrc.microsoft.com
Access Microsoft Security Response Center's guide to address vulnerabilities, manage security risks, and keep your systems protected with the latest updates .
-
web:sec.cloudapps.cisco.com
To learn about Cisco security vulnerability disclosure policies and publications, see the Security Vulnerability Policy. This document also contains instructions for obtaining fixed software and receiving security vulnerability information from Cisco. Cisco Security Advisories and other Cisco security content are provided on an "as is" basis and do not imply any kind of guarantee or warranty ...
-
web:www.cisa.gov
The CISA Vulnerability Bulletin provides a summary of new vulnerabilities that have been recorded in the past week. In some cases, the vulnerabilities in the bulletin may not yet have assigned CVSS scores. Vulnerabilities are based on the Common Vulnerabilities and Exposures
-
web:www.cisco.com
Remediation is a program that the system launches in response to a correlation policy violation. Create at least one remediation instance for a module. Add multiple remediations to each instance, describing the actions you want to perform when a policy is violated. Finally, associate remediations with rules in correlation policies for the system to launch the remediations in response to ...
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.