ET-3277
📛 Threat Title
Ruleset Update Summary - 2026/05/01 - v11184
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (1)
- Ruleset Update Summary - 2026/05/01 - v11184 Emerging Threats Community
Remediations (8)
-
web:community.emergingthreats.net
Summary : 15 new OPEN, 39 new PRO (15 + 24) Added rules: Open: 2069095 - ET MALWARE MixShell CnC Activity (GET) (malware.rules) 2069096 - ET MALWARE MixShell CnC Activity Response (malware.rules) 2069097 - ET WEB_SPECIFIC_APPS Array VPN fshare_template Arbitrary File Read (web_specific_apps.rules) 2069098 - ET EXPLOIT_KIT ZPHP Domain in DNS Lookup (crystalaxishub .top) (exploit_kit.rules ...
-
web:community.emergingthreats.net
Summary : 55 new OPEN, 58 new PRO (55 + 3) Added rules: Open: 2069110 - ET MALWARE Win32/Lumma Stealer Related CnC Domain in DNS Lookup (americoq .cyou) (malware.rules) 2069111 - ET MALWARE Observed Win32/Lumma Stealer Related Domain (americoq .cyou) in TLS SNI (malware.rules) 2069112 - ET MALWARE Win32/Lumma Stealer Related CnC Domain in DNS Lookup (fragmentyperspowp .shop) (malware.rules ...
-
web:learn.microsoft.com
The Microsoft Security Response Center releases security bulletins on a monthly basis addressing security vulnerabilities in Microsoft software, describing their remediation , and providing links to the applicable updates for affected software.
-
web:msrc.microsoft.com
Access Microsoft Security Response Center's guide to address vulnerabilities, manage security risks, and keep your systems protected with the latest updates .
-
web:public.cyber.mil
The SRG/STIG Library Compilation comprises all DOD Security Requirements Guides (SRGs) and DOD Security Technical Implementation Guides (STIGs) housed on Cyber Exchange. Excluded are Security Readiness Review (SRR) Tools (scripts and OVAL Benchmarks), Group Policy Objects, and draft SRGs and STIGs. The SRG/STIG Library Compilation is updated quarterly to capture all newly updated or released ...
-
web:www.cisco.com
Remediation is a program that the system launches in response to a correlation policy violation. Create at least one remediation instance for a module. Add multiple remediations to each instance, describing the actions you want to perform when a policy is violated. Finally, associate remediations with rules in correlation policies for the system to launch the remediations in response to ...
-
web:www.cve.org
Identify, define, and catalog publicly disclosed cybersecurity vulnerabilities. There are currently over 333,000 CVE Records accessible via Download or Keyword Search above.
-
web:www.defendedge.com
Vulnerability Summary for the Week of May 4, 2026 Posted by:
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.