April 29, 2024, 8:40 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

SigmaHQ Rules Release Highlights — r2024–04–29

https://github.com/SigmaHQ/sigma/releases/tag/r2024-04-29

Sigma Rule Packages for 29–04–2024 are released and available for download. This release saw the addition of 17 new rules, 35 rule updates and 8 rule fixes by 19 contributors.

New Rules

Some highlights for the newer rules include, rules covering exploitation indicators of CVE-2024–3400.

title: Potential CVE-2024-3400 Exploitation - Palo Alto GlobalProtect OS Command Injection - File Creation
id: bcd95697-e3e7-4c6f-8584-8e3503e6929f
status: experimental
description: |
Detects suspicious file creations in …

article link release rules topic

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC