ET-3287
📛 Threat Title
Ruleset Update Summary - 2026/05/08 - v11189
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (1)
- Ruleset Update Summary - 2026/05/08 - v11189 Emerging Threats Community
Remediations (8)
-
web:community.emergingthreats.net
Summary : 29 new OPEN, 55 new PRO (29 + 26) Added rules: Open: 2069208 - ET EXPLOIT_KIT ZPHP Domain in DNS Lookup (calmvector .top) (exploit_kit.rules) 2069209 - ET EXPLOIT_KIT ZPHP Domain in TLS SNI (calmvector .top) (exploit_kit.rules) 2069210 - ET MALWARE TA569 Gholoader CnC Domain in DNS Lookup (files .dsbaux .com) (malware.rules) 2069211 - ET MALWARE TA569 Gholoader CnC Domain in TLS SNI ...
-
web:docs.tenable.com
Remediation tracking is a systematic process used to monitor and manage the progress of resolving security vulnerabilities and weaknesses identified within an organization's infrastructure.
-
web:learn.microsoft.com
Defender for Business includes several remediation actions. These actions include manual response actions, actions following automated investigation, and live response actions. The following table lists remediation actions that are available.
-
web:learn.microsoft.com
In addition, some types of remediation actions can occur automatically, whereas other types of remediation actions are taken manually by your organization's security team. When an automated investigation results in one or more remediation actions, the investigation completes only when the remediation actions are taken, approved, or rejected.
-
web:learn.microsoft.com
The Microsoft Security Response Center releases security bulletins on a monthly basis addressing security vulnerabilities in Microsoft software, describing their remediation , and providing links to the applicable updates for affected software.
-
web:msrc.microsoft.com
Access Microsoft Security Response Center's guide to address vulnerabilities, manage security risks, and keep your systems protected with the latest updates .
-
web:publiccloudimagechangeinfo.suse.com
While upgrading is the most secure and recommended path, users can mitigate the vulnerability using one of the following methods: Use a validating interceptor (recommended mitigation ); infrastructure-level normalization; and/or policy hardening. Packages affected: containerd > 0-0 (version in image is 1.7.29-slfo.1.1_1.1).
-
web:www.cisa.gov
Overview This document presents two playbooks: one for incident response and one for vulnerability response. These playbooks provide FCEB agencies with a standard set of procedures to identify, coordinate, remediate, recover, and track successful mitigations from incidents and vulnerabilities affecting FCEB systems, data, and networks. In addition, future iterations of these playbooks may be ...
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.