s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

ET-3324

📛 Threat Title

Ruleset Update Summary - 2026/05/13 - v11192

Category: forum-post First seen: Last updated: Source: Emerging Threats Community

Indicators of Compromise (0)

No indicators of compromise on this threat.

References (1)

Remediations (8)

  • web:community.emergingthreats.net

    Summary : 29 new OPEN, 44 new PRO (29 + 15) Thanks @Abnormal Added rules: Open: 2068766 - ET WEB_SPECIFIC_APPS Cisco Secure Firewall Management Center Authentication Bypass (CVE-2026-20079) (web_specific_apps.rules) 2068767 - ET PHISHING Observed DNS Query to VENOM PhaaS Domain (gutmann .ae) (phishing.rules) 2068768 - ET PHISHING Observed DNS Query to VENOM PhaaS Domain (tls-api0365 .sbs ...

  • web:community.emergingthreats.net

    Summary : 7 new OPEN, 9 new PRO (7 + 2) Added rules: Open: 2069165 - ET MALWARE TA569 Gholoader CnC Domain in DNS Lookup (images .tippytoespreschoolva .com) (malware.rules) 2069166 - ET MALWARE TA569 Gholoader CnC Domain in TLS SNI (images .tippytoespreschoolva .com) (malware.rules) 2069167 - ET MALWARE Win32/Lumma Stealer Related CnC Domain in DNS Lookup (fourdigs .cyou) (malware.rules ...

  • web:community.emergingthreats.net

    Ruleset Updates 0 79 April 24, 2026 Ruleset Update Summary - 2026/03/11 - v11144 Ruleset Updates 0 75 March 11, 2026 Ruleset Update Summary - 2026/03/20 - v11154 Ruleset Updates 0 93 March 20, 2026 Ruleset Update Summary - 2026/01/30 - v11115 Ruleset Updates 0 91 January 30, 2026 Ruleset Update Summary - 2026/02/03 - v11117 Ruleset Updates 0 90 ...

  • web:community.emergingthreats.net

    Summary : 29 new OPEN, 55 new PRO (29 + 26) Added rules: Open: 2069208 - ET EXPLOIT_KIT ZPHP Domain in DNS Lookup (calmvector .top) (exploit_kit.rules) 2069209 - ET EXPLOIT_KIT ZPHP Domain in TLS SNI (calmvector .top) (exploit_kit.rules) 2069210 - ET MALWARE TA569 Gholoader CnC Domain in DNS Lookup (files .dsbaux .com) (malware.rules) 2069211 - ET MALWARE TA569 Gholoader CnC Domain in TLS SNI ...

  • web:msrc.microsoft.com

    Access Microsoft Security Response Center's guide to address vulnerabilities, manage security risks, and keep your systems protected with the latest updates .

  • web:www.cisco.com

    Remediation is a program that the system launches in response to a correlation policy violation. Create at least one remediation instance for a module. Add multiple remediations to each instance, describing the actions you want to perform when a policy is violated. Finally, associate remediations with rules in correlation policies for the system to launch the remediations in response to ...

  • web:www.cvedetails.com

    CVEdetails.com

  • web:www.servicenow.com

    Hi All, We have created one new Remediation target rule, but it is getting applied to the new records not for the existing ones. Also, executed the scheduled job for it, but still the target date is not getting updated. Remediation target rule: VIT Record: Last opened is 7th March, and according to remediation target rule, the target date should get updated to 22nd March. Please advice!

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.