April 29, 2024, 8:40 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

SigmaHQ Rules Release Highlights — r2024–04–29

https://github.com/SigmaHQ/sigma/releases/tag/r2024-04-29

Sigma Rule Packages for 29–04–2024 are released and available for download. This release saw the addition of 17 new rules, 35 rule updates and 8 rule fixes by 19 contributors.

New Rules

Some highlights for the newer rules include, rules covering exploitation indicators of CVE-2024–3400.

title: Potential CVE-2024-3400 Exploitation - Palo Alto GlobalProtect OS Command Injection - File Creation
id: bcd95697-e3e7-4c6f-8584-8e3503e6929f
status: experimental
description: |
Detects suspicious file creations in …

article link release rules topic

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

COMM Penetration Tester (PenTest-2), Chantilly, VA OS&CI Job #368

@ Allen Integrated Solutions | Chantilly, Virginia, United States

Consultant Sécurité SI H/F Gouvernance - Risques - Conformité

@ Hifield | Sèvres, France

Infrastructure Consultant

@ Telefonica Tech | Belfast, United Kingdom