s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

ET-3262

📛 Threat Title

Ruleset Update Summary - 2026/04/14 - v11171

Category: forum-post First seen: Last updated: Source: Emerging Threats Community

Indicators of Compromise (0)

No indicators of compromise on this threat.

References (1)

Remediations (8)

  • web:community.emergingthreats.net

    Summary : 42 new OPEN, 48 new PRO (42 + 6) Added rules: Open: 2068724 - ET MALWARE Observed DNS Query to WallStealer Domain (flashanka .icu) (malware.rules) 2068725 - ET MALWARE Observed DNS Query to WallStealer Domain (adcashpro .icu) (malware.rules) 2068726 - ET MALWARE Observed WallStealer Domain (flashanka .icu in TLS SNI) (malware.rules) 2068727 - ET MALWARE Observed WallStealer Domain ...

  • web:github.com

    This document describes the Dirty Frag vulnerability class, first discovered and reported by Hyunwoo Kim (@v4bel), which can obtain root privileges on major Linux distributions by chaining the xfrm-ESP Page-Cache Write (CVE-2026-43284) vulnerability and the RxRPC Page-Cache Write (CVE-2026-43500) vulnerability. Dirty Frag is a case that extends the bug class to which Dirty Pipe and Copy Fail ...

  • web:public.cyber.mil

    The SRG/STIG Library Compilation comprises all DOD Security Requirements Guides (SRGs) and DOD Security Technical Implementation Guides (STIGs) housed on Cyber Exchange. Excluded are Security Readiness Review (SRR) Tools (scripts and OVAL Benchmarks), Group Policy Objects, and draft SRGs and STIGs. The SRG/STIG Library Compilation is updated quarterly to capture all newly updated or released ...

  • web:www.cisa.gov

    Cybersecurity Advisory: Provides detailed information on cyber threats, including threat actor tactics, techniques, and procedures and indicators of compromise, along with recommended actions for detection, mitigation , and response.

  • web:www.cisco.com

    Introduction to Remediations A remediation is a program that the system launches in response to a correlation policy violation. When a remediation runs, the system generates a remediation status event. Remediation status events include details such as the remediation name, the correlation policy and rule that triggered it, and the exit status ...

  • web:www.cisco.com

    Remediation is a program that the system launches in response to a correlation policy violation. Create at least one remediation instance for a module. Add multiple remediations to each instance, describing the actions you want to perform when a policy is violated. Finally, associate remediations with rules in correlation policies for the system to launch the remediations in response to ...

  • web:www.cvedetails.com

    CVEdetails.com

  • web:www.fantasygrounds.com

    Planned Release Date: April 21, 2026 We are continuing to work on general ruleset updates . See the main ruleset beta thread for the summary of the updates . In order to support ruleset and extension developers, I will be making a number of notes regarding changes that should be made to bring rulesets and extensions in-line with changes to ones we directly maintain. NOTE: I will only document ...

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.