Cisco Talos released the newest rule set for SNORTⓇ Tuesday morning.
There are multiple rules in this release that protect against, Generickdz which is often the generic name given to Windows trojans. Our two new rules will prevent the malware from downloading its final payload.
Here's a breakdown of today's rule release:
|Shared object rules||Modified shared object rules||New rules||Modified rules|
snort.confin this release.
Talos' rule release:
Talos has added and modified multiple rules in the browser-chrome, file-image, file-pdf, indicator-compromise, malware-other, os-windows, protocol-scada, protocol-voip, server-oracle and server-webapp rule sets to provide coverage for emerging threats from these technologies.