Showing posts with label ransomware. Show all posts
Showing posts with label ransomware. Show all posts

Tuesday, December 17, 2019

Snort rule update for Dec. 17, 2019

Cisco Talos just released the latest SNORT® rule update for all users. Talos urges all users to implement these rules as soon as possible to keep their networks and machines protected.

Today's release contains 34 new rules and 22 modified rules.

This ruleset provides protection against the recently discovered Zeppelin ransomware attack, which we will highlight below.

Thursday, December 12, 2019

Snort rule update for Dec. 12, 2019

Cisco Talos just released the latest SNORT® rule update for all users. Talos urges all users to implement these rules as soon as possible to keep their networks and machines protected.

Today's release contains 28 new rules, eight modified rules, three new shared object rules and one modified shared object rule.

This rule set provides new coverage for several malware families, including variants of the Mimikatz credential-stealing tool, the DoppelPaymer ransomware and attacks from the Gamaredon APT.

Tuesday, November 19, 2019

Snort rule update for Nov. 19, 2019

Cisco Talos just released the latest SNORT® rule update for all users. Talos urges all users to implement these rules as soon as possible to keep their networks and machines protected.

Today's release contains 26 new rules, one modified rule and four shared object rules.

This set of rules protects against a new variant of the Dridex malware and a trojan that's posing as a fake updater.

Tuesday, March 5, 2019

Snort rule update for March 5, 2019

Just released:
Snort Subscriber Rule Set Update for March 5, 2019

Cisco Talos just released the newest SNORT® rule set. This release includes eight new and modified rules, none of which are shared object rules.

This release provides coverage for two malware families: Crytekk, a ransomware that infects users via a malicious, phony PayPal page, and Arescrypt, another ransomware.