SNORTⓇ's latest rule release is here, courtesy of Cisco Talos.
Thursday's rule release includes new coverage for the Necro Python bot. Talos researchers recently discovered this bot adding new functionality to target several well-known vulnerabilities. It also added a cryptocurrency miner. Read more over on the Talos blog.
Here's a full breakdown of this release:
Shared object rules | Modified shared object rules | New rules | Modified rules |
---|---|---|---|
0 | 0 | 34 | 1 |
snort.conf
in this release.Talos' rule release:
Talos has added and modified multiple rules in the deleted, malware-cnc, malware-other and server-other rule sets to provide coverage for emerging threats from these technologies.