[ << ALL_FEED ]

Have you heard about the public repository of Suricata rules Attack Detection?

More in Rules

Have you heard about the public repository of Suricata rules Attack Detection?

Yes, that’s meeee Within the large PT Expert Security Center team, there is a separate group of experts whose main task is to develop detection rules for network security tools. You are probably already familiar with some posts about network artifacts from this team.

After a two-year break, we are returning to you with an updated portal and once again starting to publish parts of our expertise in the form of Suricata rules 🔥

What’s new:

1. Rules for the latest vulnerabilities.
2. Rules for detecting the tools Croc and gsocket, which are extremely popular in narrow circles.
3. And also several rules for detecting lateral movement in an Active Directory network.

Configure suricata-update to support the official ptrules/open rule source and keep an eye on updates on our X page.

👋🏼 Stay tuned

#suricata #network #signature #rules
@ptescalator

More from global_author

More from global_author

More in Rules