ET-3262
📛 Threat Title
Ruleset Update Summary - 2026/04/14 - v11171
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (1)
- Ruleset Update Summary - 2026/04/14 - v11171 Emerging Threats Community
Remediations (8)
-
web:community.emergingthreats.net
Summary : 42 new OPEN, 48 new PRO (42 + 6) Added rules: Open: 2068724 - ET MALWARE Observed DNS Query to WallStealer Domain (flashanka .icu) (malware.rules) 2068725 - ET MALWARE Observed DNS Query to WallStealer Domain (adcashpro .icu) (malware.rules) 2068726 - ET MALWARE Observed WallStealer Domain (flashanka .icu in TLS SNI) (malware.rules) 2068727 - ET MALWARE Observed WallStealer Domain ...
-
web:github.com
This document describes the Dirty Frag vulnerability class, first discovered and reported by Hyunwoo Kim (@v4bel), which can obtain root privileges on major Linux distributions by chaining the xfrm-ESP Page-Cache Write (CVE-2026-43284) vulnerability and the RxRPC Page-Cache Write (CVE-2026-43500) vulnerability. Dirty Frag is a case that extends the bug class to which Dirty Pipe and Copy Fail ...
-
web:public.cyber.mil
The SRG/STIG Library Compilation comprises all DOD Security Requirements Guides (SRGs) and DOD Security Technical Implementation Guides (STIGs) housed on Cyber Exchange. Excluded are Security Readiness Review (SRR) Tools (scripts and OVAL Benchmarks), Group Policy Objects, and draft SRGs and STIGs. The SRG/STIG Library Compilation is updated quarterly to capture all newly updated or released ...
-
web:www.cisa.gov
Cybersecurity Advisory: Provides detailed information on cyber threats, including threat actor tactics, techniques, and procedures and indicators of compromise, along with recommended actions for detection, mitigation , and response.
-
web:www.cisco.com
Introduction to Remediations A remediation is a program that the system launches in response to a correlation policy violation. When a remediation runs, the system generates a remediation status event. Remediation status events include details such as the remediation name, the correlation policy and rule that triggered it, and the exit status ...
-
web:www.cisco.com
Remediation is a program that the system launches in response to a correlation policy violation. Create at least one remediation instance for a module. Add multiple remediations to each instance, describing the actions you want to perform when a policy is violated. Finally, associate remediations with rules in correlation policies for the system to launch the remediations in response to ...
-
web:www.cvedetails.com
CVEdetails.com
-
web:www.fantasygrounds.com
Planned Release Date: April 21, 2026 We are continuing to work on general ruleset updates . See the main ruleset beta thread for the summary of the updates . In order to support ruleset and extension developers, I will be making a number of notes regarding changes that should be made to bring rulesets and extensions in-line with changes to ones we directly maintain. NOTE: I will only document ...
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.