ET-3269
📛 Threat Title
Ruleset Update Summary - 2026/04/22 - v11177
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (1)
- Ruleset Update Summary - 2026/04/22 - v11177 Emerging Threats Community
Remediations (8)
-
web:blog.qualys.com
RedSun is a zero-day LPE in Microsoft Defender with no patch available. Learn how to detect and mitigate it instantly using Qualys VMDR and TruRisk™ Eliminate.
-
web:community.emergingthreats.net
Summary : 38 new OPEN, 66 new PRO (38 + 28) Added rules: Open: 2068899 - ET MALWARE Xinference PyPI Supply Chain (TeamPCP) CnC Domain in DNS Lookup (malware.rules) 2068900 - ET MALWARE Xinference PyPI Supply Chain (TeamPCP) CnC Domain in TLS SNI (malware.rules) 2068901 - ET MALWARE Xinference PyPI Supply Chain (TeamPCP) Exfiltration over HTTP (malware.rules) 2068902 - ET MALWARE LiteLLM ...
-
web:community.emergingthreats.net
Ruleset Updates 0 93 December 27, 2024 Ruleset Update Summary - 2024/06/10 - v10613 Ruleset Updates 0 177 June 10, 2024 Ruleset Update Summary - 2025/10/07 - v11034 Ruleset Updates 0 131 October 7, 2025 Ruleset Update Summary - 2024/08/21 - v10671 Ruleset Updates 0 157 August 21, 2024 Ruleset Update Summary - 2024/12/13 - v10805 Ruleset Updates ...
-
web:community.emergingthreats.net
Ruleset Updates 0 79 April 24, 2026 Ruleset Update Summary - 2026/03/11 - v11144 Ruleset Updates 0 75 March 11, 2026 Ruleset Update Summary - 2026/03/20 - v11154 Ruleset Updates 0 93 March 20, 2026 Ruleset Update Summary - 2026/01/30 - v11115 Ruleset Updates 0 91 January 30, 2026 Ruleset Update Summary - 2026/02/03 - v11117 Ruleset Updates 0 90 ...
-
web:feedly.com
News Ruleset Update Summary - 2026/04/22 - v11177 Emerging Threats - Latest topics / 17d 2068906 - ET MALWARE Observed Win32/Lumma Stealer Related Domain (additioniqqwu .shop) in TLS SNI (malware.rules) 2068910 - ET MALWARE Observed Win32/Lumma Stealer Related Domain (grannndjtaom .shop) in TLS SNI (malware.rules) CVE-2026-5178
-
web:learn.microsoft.com
In addition, some types of remediation actions can occur automatically, whereas other types of remediation actions are taken manually by your organization's security team. When an automated investigation results in one or more remediation actions, the investigation completes only when the remediation actions are taken, approved, or rejected.
-
web:msrc.microsoft.com
Access Microsoft Security Response Center's guide to address vulnerabilities, manage security risks, and keep your systems protected with the latest updates .
-
web:www.cisco.com
Remediation is a program that the system launches in response to a correlation policy violation. Create at least one remediation instance for a module. Add multiple remediations to each instance, describing the actions you want to perform when a policy is violated. Finally, associate remediations with rules in correlation policies for the system to launch the remediations in response to ...
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.