s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

ET-3266

📛 Threat Title

Ruleset Update Summary - 2026/04/17 - v11174

Category: forum-post First seen: Last updated: Source: Emerging Threats Community

Indicators of Compromise (0)

No indicators of compromise on this threat.

References (1)

Remediations (8)

  • web:community.emergingthreats.net

    Summary : 14 new OPEN, 19 new PRO (14 + 5) Thanks @suyog41 Added rules: Open: 2068711 - ET EXPLOIT_KIT LandUpdate808 Domain in DNS Lookup (windlrr .com) (exploit_kit.rules) 2068795 - ET INFO DYNAMIC_DNS Query to a *.isfacat .net domain (info.rules) 2068796 - ET INFO DYNAMIC_DNS HTTP Request to a *.isfacat .net domain (info.rules) 2068797 - ET INFO DYNAMIC_DNS Query to a *.gandurlogistics .com ...

  • web:community.emergingthreats.net

    Summary : 9 new OPEN, 19 new PRO (9 + 10) Added rules: Open: 2068808 - ET INFO DYNAMIC_DNS Query to a *.fiedleracres .com domain (info.rules) 2068809 - ET INFO DYNAMIC_DNS HTTP Request to a *.fiedleracres .com domain (info.rules) 2068810 - ET MALWARE Win32/Lumma Stealer Related CnC Domain in DNS Lookup (cankgmr .cyou) (malware.rules) 2068811 - ET MALWARE Observed Win32/Lumma Stealer Related ...

  • web:public.cyber.mil

    The SRG/STIG Library Compilation comprises all DOD Security Requirements Guides (SRGs) and DOD Security Technical Implementation Guides (STIGs) housed on Cyber Exchange. Excluded are Security Readiness Review (SRR) Tools (scripts and OVAL Benchmarks), Group Policy Objects, and draft SRGs and STIGs. The SRG/STIG Library Compilation is updated quarterly to capture all newly updated or released ...

  • web:sec.cloudapps.cisco.com

    To learn about Cisco security vulnerability disclosure policies and publications, see the Security Vulnerability Policy. This document also contains instructions for obtaining fixed software and receiving security vulnerability information from Cisco. Cisco Security Advisories and other Cisco security content are provided on an "as is" basis and do not imply any kind of guarantee or warranty ...

  • web:www.cisa.gov

    Overview This document presents two playbooks: one for incident response and one for vulnerability response. These playbooks provide FCEB agencies with a standard set of procedures to identify, coordinate, remediate, recover, and track successful mitigations from incidents and vulnerabilities affecting FCEB systems, data, and networks. In addition, future iterations of these playbooks may be ...

  • web:www.cisco.com

    Remediation is a program that the system launches in response to a correlation policy violation. Create at least one remediation instance for a module. Add multiple remediations to each instance, describing the actions you want to perform when a policy is violated. Finally, associate remediations with rules in correlation policies for the system to launch the remediations in response to ...

  • web:www.cvedetails.com

    CVEdetails.com

  • web:www.servicenow.com

    Hi all - I need to set a static remediation target date for vulnerabilities published before a certain date. I have been using the 'last found' field to do this. I realized that creating target rules with the last found field will move the target every time the VI is found again, which really does...

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.