ET-3389
📛 Threat Title
Ruleset Update Summary - 2026/07/17 - v11236
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (1)
- Ruleset Update Summary - 2026/07/17 - v11236 Emerging Threats Community
Remediations (10)
-
web:community.emergingthreats.net
Summary : 21 new OPEN, 28 new PRO (21 + 7) Added rules: Open: 2070034 - ET INFO Ethereum Contract Request, get() (info.rules) 2070035 - ET INFO Ethereum Contract Request, getURL() (info.rules) 2070036 - ET MALWARE Win32/Lumma Stealer Related CnC Domain in DNS Lookup (WieseSpark .cyou) (malware.rules) 2070037 - ET MALWARE Observed Win32/Lumma Stealer Related Domain (WieseSpark .cyou) in TLS SNI ...
-
web:community.emergingthreats.net
Summary : 20 new OPEN, 23 new PRO (20 + 3) There will be no release Friday July 3rd. Added rules: Open: 2070125 - ET WEB_SPECIFIC_APPS Progress Kemp Loadmaster Remote Code Execution (CVE-2026-8037) (web_specific_apps.rules) 2070126 - ET WEB_SPECIFIC_APPS [aretiq.ai] Exchange EWS InstallApp with ManifestUrl Server-Side Request Forgery Attempt (CVE-2026-45502) (web_specific_apps.rules) 2070127 ...
-
web:community.emergingthreats.net
Summary : 14 new OPEN, 16 new PRO (14 + 2) Added rules: Open: 2071214 - ET WEB_SPECIFIC_APPS Sonicwall SMA1000 AMC Authenticated Path Traversal (CVE-2026-15410) (web_specific_apps.rules) 2071215 - ET WEB_SPECIFIC_APPS Splunk Cloud & Enterprise edit_user Capability Privilege Escalation (CVE-2023-32707) (web_specific_apps.rules) 2071216 - ET EXPLOIT_KIT LandUpdate808 Domain in DNS Lookup ...
-
web:community.emergingthreats.net
Summary : 7 new OPEN, 7 new PRO (7 + 0) Added rules: Open: 2071228 - ET MALWARE Win32/Lumma Stealer Related CnC Domain in DNS Lookup (meltedpleasandtws .shop) (malware.rules) 2071229 - ET MALWARE Observed Win32/Lumma Stealer Related Domain (meltedpleasandtws .shop) in TLS SNI (malware.rules) 2071230 - ET MALWARE Win32/Lumma Stealer Related CnC Domain in DNS Lookup (deckerh .cyou) (malware.rules ...
-
web:community.emergingthreats.net
Summary : 9 new OPEN, 12 new PRO (9 + 3) Added rules: Open: 2071235 - ET WEB_SPECIFIC_APPS SonicWall SMA Websocket Tunnel Bypass (CVE-2026-15409) (web_specific_apps.rules) 2071236 - ET EXPLOIT_KIT LandUpdate808 Domain in DNS Lookup (meduurst .space) (exploit_kit.rules) 2071237 - ET EXPLOIT_KIT LandUpdate808 Domain in TLS SNI (meduurst .space) (exploit_kit.rules) 2071238 - ET MALWARE TA569 ...
-
web:community.emergingthreats.net
Summary : 9 new OPEN, 37 new PRO (9 + 28) Added rules: Open: 2071268 - ET MALWARE Win32/Lumma Stealer Related CnC Domain in DNS Lookup (appallf .pics) (malware.rules) 2071269 - ET MALWARE Observed Win32/Lumma Stealer R…
-
web:learn.microsoft.com
Azure Web Application Firewall supports a defined set of managed ruleset versions to ensure strong security protections, predictable behavior, and a clear upgrade path for customers. Azure manages the Default Rule Set (DRS), Bot Management, and HTTP DDoS rulesets versions and periodically releases new rule set versions that include new protections, updated signatures, and rule improvements.
-
web:nvd.nist.gov
The NVD is the U.S. government repository of standards based vulnerability management data represented using the Security Content Automation Protocol (SCAP). This data enables automation of vulnerability management, security measurement, and compliance. The NVD includes databases of security checklist references, security-related software flaws, product names, and impact metrics. For ...
-
web:www.fedramp.gov
This site contains FedRAMP's Consolidated Rules for 2026.
-
web:www.fedramp.gov
This section contains the entire Consolidated Rules for 2026 as a standalone reference for each ruleset .
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.