trendmicron logo - business

Business

search close
  • Solutions
    • By Challenge
      • By Challenge
        • By Challenge
          Learn more
      • Understand, Prioritize & Mitigate Risks
        • Understand, Prioritize & Mitigate Risks

          Improve your risk posture with attack surface management

          Learn more
      • Protect Cloud-Native Apps
        • Protect Cloud-Native Apps

          Security that enables business outcomes

          Learn more
      • Protect Your Hybrid World
        • Protect Your Hybrid, Multi-Cloud World

          Gain visibility and meet business needs with security

          Learn more
      • Securing Your Borderless Workforce
        • Securing Your Borderless Workforce

          Connect with confidence from anywhere, on any device

          Learn more
      • Eliminate Network Blind Spots
        • Eliminate Network Blind Spots

          Secure users and key operations throughout your environment

          Learn more
      • See More. Respond Faster.
        • See More. Respond Faster.

          Move faster than your adversaries with powerful purpose-built XDR, attack surface risk management, and zero trust capabilities

          Learn more
      • Extend Your Team
        • Extend Your Team. Respond to Threats Agilely

          Maximize effectiveness with proactive risk reduction and managed services

          Learn more
      • Operationalizing Zero Trust
        • Operationalizing Zero Trust

          Understand your attack surface, assess your risk in real time, and adjust policies across network, workloads, and devices from a single console

          Learn more
    • By Role
      • By Role
        • By Role
          Learn more
      • CISO
        • CISO

          Drive business value with measurable cybersecurity outcomes

          Learn more
      • SOC Manager
        • SOC Manager

          See more, act faster

          Learn more
      • Infrastructure Manager
        • Infrastructure Manager

          Evolve your security to mitigate threats quickly and effectively

          Learn more
      • Cloud Builder and Developer
        • Cloud Builder and Developer

          Ensure code runs only as intended

          Learn more
      • Cloud Security Ops
        • Cloud Security Ops

          Gain visibility and control with security designed for cloud environments

          Learn more
    • By Industry
      • By Industry
        • By Industry
          Learn more
      • Healthcare
        • Healthcare

          Protect patient data, devices, and networks while meeting regulations

          Learn more
      • Manufacturing
        • Manufacturing

          Protecting your factory environments – from traditional devices to state-of-the-art infrastructures

          Learn more
      • Oil & Gas
        • Oil & Gas

          ICS/OT Security for the oil and gas utility industry

          Learn more
      • Electric Utility
        • Electric Utility

          ICS/OT Security for the electric utility

          Learn more
      • Federal
        • Federal
          Learn more
      • Automotive
        • Automotive
          Learn more
      • 5G Networks
        • 5G Networks
          Learn more
    • Small & Midsized Business Security
      • Small & Midsized Business Security

        Stop threats with easy-to-use solutions designed for your growing business

        Learn more
  • Platform
    • Vision One Platform
      • Vision One Platform
        • Trend Vision One
          Our Unified Platform

          Bridge threat protection and cyber risk management

          Learn more
          trend-vision-one-laptop-console-nav
      • AI Companion
        • Trend Vision One Companion

          Your generative AI cybersecurity assistant

          Learn more
    • Attack Surface Management
      • Attack Surface Management

        Stop breaches before they happen

        Learn more
        asrm-console-shot?scl=1
    • XDR (Extended Detection & Response)
      • XDR (Extended Detection & Response)

        Stop adversaries faster with a broader perspective and better context to hunt, detect, investigate, and respond to threats from a single platform

        Learn more
        xdr-product-console-shot?scl=1
    • Cloud Security
      • Cloud Security
        • Trend Vision One™
          Cloud Security Overview

          The most trusted cloud security platform for developers, security teams, and businesses

          Learn more
      • Attack Surface Risk Management for Cloud
        • Attack Surface Risk Management for Cloud

          Cloud asset discovery, vulnerability prioritization, Cloud Security Posture Management, and Attack Surface Management all in one

          Learn more
      • XDR for Cloud
        • XDR for Cloud

          Extend visibility to the cloud and streamline SOC investigations

          Learn more
          xdr-product-console-shot?scl=1
      • Workload Security
        • Workload Security

          Secure your data center, cloud, and containers without compromising performance by leveraging a cloud security platform with CNAPP capabilities

          Learn more
          cloud-one-workload-security-console-shot?scl=1
      • Container Security
        • Container Security

          Simplify security for your cloud-native applications with advanced container image scanning, policy-based admission control, and container runtime protection

          Learn more
          cloud-one-container-console-shot?scl=1
      • File Security
        • File Security

          Protect application workflow and cloud storage against advanced threats

          Learn more
          cloud-one-file-storage-console-shot?scl=1
    • Endpoint Security
      • Endpoint Security
        • Endpoint Security Overview

          Defend the endpoint through every stage of an attack

          Learn more
      • XDR for Endpoint
        • XDR for Endpoint

          Stop adversaries faster with a broader perspective and better context to hunt, detect, investigate, and respond to threats from a single platform

          Learn more
          xdr-product-console-shot?scl=1
      • Workload Security
        • Workload Security

          Optimized prevention, detection, and response for endpoints, servers, and cloud workloads

          Learn more
      • Industrial Endpoint Security
        • Industrial Endpoint Security
          Learn more
      • Mobile Security
        • Mobile Security

          On-premises and cloud protection against malware, malicious applications, and other mobile threats

          Learn more
          sps-mobile-security-enterprise-console-shot?scl=1
    • Network Security
      • Network Security
        • Network Security Overview

          Expand the power of XDR with network detection and response

          Learn more
      • XDR for Network
        • XDR for Network

          Stop adversaries faster with a broader perspective and better context to hunt, detect, investigate, and respond to threats from a single platform

          Learn more
          xdr-product-console-shot?scl=1
      • Network Intrusion Prevention (IPS)
        • Network Intrusion Prevention (IPS)

          Protect against known, unknown, and undisclosed vulnerabilities in your network

          Learn more
      • Breach Detection System (BDS)
        • Breach Detection System (BDS)

          Detect and respond to targeted attacks moving inbound, outbound, and laterally

          Learn more
      • Secure Service Edge (SSE)
        • Secure Service Edge (SSE)

          Redefine trust and secure digital transformation with continuous risk assessments

          Learn more
          zero-trust-access-console-shot?scl=1
      • Industrial Network Security
        • Industrial Network Security
          Learn more
      • 5G Network Security
        • 5G Network Security
          Learn more
    • Email Security
      • Email Security
        • Email Security

          Stop phishing, malware, ransomware, fraud, and targeted attacks from infiltrating your enterprise

          Learn more
      • Email and Collaboration Security
        • Trend Vision One™
          Email and Collaboration Security

          Stop phishing, ransomware, and targeted attacks on any email service including Microsoft 365 and Google Workspace

          Learn more
          email-security-console-shot?scl=1
    • OT Security
      • OT Security
        • OT Security

          Learn about solutions for ICS / OT security.

          Learn more
      • XDR for OT
        • XDR for OT

          Stop adversaries faster with a broader perspective and better context to hunt, detect, investigate, and respond to threats from a single platform

          Learn more
          xdr-product-console-shot?scl=1
      • Industrial Network Security
        • Industrial Network Security
          Industrial Network Security
      • Industrial Endpoint Security
        • Industrial Endpoint Security
          Learn more
    • Threat Insights
      • Threat Insights

        See threats coming from miles away

        Learn more
    • Identity Security
      • Identity Security

        End-to-end identity security from identity posture management to detection and response

        Learn more
    • On-Premises Data Sovereignty
      • On-Premises Data Sovereignty

        Prevent, detect, respond and protect without compromising data sovereignty

        Learn more
    • All Products, Services, and Trials
      • All Products, Services, and Trials
        Learn more
        all-products-console-shot?scl=1
  • Research
    • Research
      • Research
        • Research
          Learn more
      • Research, News, and Perspectives
        • Research, News, and Perspectives
          Learn more
      • Research and Analysis
        • Research and Analysis
          Learn more
      • Security News
        • Security News
          Learn more
      • Zero Day Initiatives (ZDI)
        • Zero Day Initiatives (ZDI)
          Learn more
  • Services
    • Our Services
      • Our Services
        • Our Services
          Learn more
      • Service Packages
        • Service Packages

          Augment security teams with 24/7/365 managed detection, response, and support

          Learn more
      • Managed XDR
        • Managed XDR

          Augment threat detection with expertly managed detection and response (MDR) for email, endpoints, servers, cloud workloads, and networks

          Learn more
      • Incident Response
        • Incident Response
          • Incident Response

            Our trusted experts are on call whether you're experiencing a breach or looking to proactively improve your IR plans

            Learn more
        • Insurance Carriers and Law Firms
          • Insurance Carriers and Law Firms

            Stop breaches with the best response and detection technology on the market and reduce clients’ downtime and claim costs

            Learn more
      • Support Services
        • Support Services
          Learn more
  • Partners
    • Partner Program
      • Partner Program
        • Partner Program Overview

          Grow your business and protect your customers with the best-in-class complete, multilayered security

          Learn more
      • Partner Competencies
        • Partner Competencies

          Stand out to customers with competency endorsements that showcase your expertise

          Learn more
      • Partner Successes
        • Partner Successes
          Learn more
      • Managed Security Service Provider
        • Managed Security Service Provider

          Deliver modern security operations services with our industry-leading XDR

          Learn more
      • Managed Service Provider
        • Managed Service Provider

          Partner with a leading expert in cybersecurity, leverage proven solutions designed for MSPs

          Learn more
    • Alliance Partners
      • Alliance Partners
        • Alliance Partners

          We work with the best to help you optimize performance and value

          Learn more
      • Technology Alliance Partners
        • Technology Alliance Partners
          Learn more
      • Find Alliance Partners
        • Find Alliance Partners
          Learn more
    • Partner Resources
      • Partner Resources
        • Partner Resources

          Discover resources designed to accelerate your business’s growth and enhance your capabilities as a Trend Micro partner

          Learn more
      • Partner Portal Login
        • Partner Portal Login
          Login
      • Trend Campus
        • Trend Campus

          Accelerate your learning with Trend Campus, an easy-to-use education platform that offers personalized technical guidance

          Learn more
      • Co-Selling
        • Co-Selling

          Access collaborative services designed to help you showcase the value of Trend Vision One™ and grow your business

          Learn more
      • Become a Partner
        • Become a Partner
          Learn more
      • Distributors
        • Distributors
          Learn more
    • Find Partners
      • Find Partners

        Locate a partner from whom you can purchase Trend Micro solutions

        Learn more
  • Company
    • Why Trend Micro
      • Why Trend Micro
        • Why Trend Micro
          Learn more
      • Customer Success Stories
        • Customer Success Stories
          Learn more
      • The Human Connection
        • The Human Connection
          Learn more
      • Industry Accolades
        • Industry Accolades
          Learn more
      • Strategic Alliances
        • Strategic Alliances
          Learn more
    • Compare Trend Micro
      • Compare Trend Micro
        • Compare Trend Micro

          See how Trend outperforms the competition

          Let's go
      • vs. Crowdstrike
        • Trend Micro vs. Crowdstrike

          Crowdstrike provides effective cybersecurity through its cloud-native platform, but its pricing may stretch budgets, especially for organizations seeking cost-effective scalability through a true single platform

          Let's go
      • vs. Microsoft
        • Trend Micro vs. Microsoft

          Microsoft offers a foundational layer of protection, yet it often requires supplemental solutions to fully address customers' security problems

          Let's go
      • vs. Palo Alto Networks
        • Trend Micro vs. Palo Alto Networks

          Palo Alto Networks delivers advanced cybersecurity solutions, but navigating its comprehensive suite can be complex and unlocking all capabilities requires significant investment

          Let's go
    • About Us
      • About Us
        • About Us
          Learn more
      • Trust Center
        • Trust Center
          Learn more
      • History
        • History
          Learn more
      • Diversity, Equity and Inclusion
        • Diversity, Equity and Inclusion
          Learn more
      • Corporate Social Responsibility
        • Corporate Social Responsibility
          Learn more
      • Leadership
        • Leadership
          Learn more
      • Security Experts
        • Security Experts
          Learn more
      • Internet Safety and Cybersecurity Education
        • Internet Safety and Cybersecurity Education
          Learn more
      • Legal
        • Legal
          Learn more
      • Investors
        • Investors
          Learn more
      • Formula E Racing
        • Formula E Racing
          Learn more
    • Connect With Us
      • Connect With Us
        • Connect With Us
          Learn more
      • Newsroom
        • Newsroom
          Learn more
      • Events
        • Events
          Learn more
      • Careers
        • Careers
          Learn more
      • Webinars
        • Webinars
          Learn more
  • Free Trials
  • Contact Us
Looking for home solutions?
Under Attack?
Support
  • Business Support Portal
  • Education and Certification
  • Contact Support
  • Find a Support Partner
Resources
  • AI Security
  • Trend Micro vs. Competition
  • Cyber Risk Assessments
  • What Is?
  • Threat Encyclopedia
  • Cyber Insurance
  • Glossary of Terms
  • Webinars
Log In
  • Vision One
  • Support
  • Partner Portal
  • Cloud One
  • Product Activation and Management
  • Referral Affiliate
arrow_back
search
close
  • Threat Encyclopedia
  • Network Content Inspection Rules

Network Content Inspection Rules

    Confidence Level:  
    Low
    Medium
    High
    Default Rule:  
    Enable
    Disable
    Rule IDRule DescriptionConfidence LevelDDI Default RuleNetwork Content Inspection Pattern Release Date
    DDI RULE 5392 CVE-2024-23468 - SOLARWINDS PATH TRAVERSAL - TCP (Request)
    HIGH
    2025/05/07DDI RULE 5392/vinfo/gb/threat-encyclopedia/network/ddi-rule-5392
    DDI RULE 5387 CVE-2023-44221 - SONICWALL EXPLOIT COMMAND INJECTION EXPLOIT - HTTP(RESPONSE)
    HIGH
    2025/05/03DDI RULE 5387/vinfo/gb/threat-encyclopedia/network/ddi-rule-5387
    DDI RULE 5385 CVE-2021-47667 - ZENDTO RCE - HTTP (Request)
    HIGH
    2025/04/30DDI RULE 5385/vinfo/gb/threat-encyclopedia/network/ddi-rule-5385
    DDI RULE 5382 CVE-2025-31324 - SAP NETWEAVER UPLOAD EXPLOIT REQUEST - HTTP(REQUEST)
    HIGH
    2025/04/26DDI RULE 5382/vinfo/gb/threat-encyclopedia/network/ddi-rule-5382
    DDI RULE 5377 ROUTER CLEARTEXT PASSWORD DISCLOSURE EXPLOIT - HTTP (Request)
    HIGH
    2025/04/22DDI RULE 5377/vinfo/gb/threat-encyclopedia/network/ddi-rule-5377
    DDI RULE 5375 CVE-2024-10188 - LITELLM DOS - HTTP (Request)
    HIGH
    2025/04/16DDI RULE 5375/vinfo/gb/threat-encyclopedia/network/ddi-rule-5375
    DDI RULE 5369 IVANTI TRAVERSAL EXPLOIT - HTTP(Response)
    HIGH
    2025/04/15DDI RULE 5369/vinfo/gb/threat-encyclopedia/network/ddi-rule-5369
    DDI RULE 5363 CVE-2024-50330 - IVANTI SQL INJECTION - HTTP (Response)
    HIGH
    2025/04/02DDI RULE 5363/vinfo/gb/threat-encyclopedia/network/ddi-rule-5363
    DDI RULE 5359 CVE-2018-8639 - Win32k Privilege Escalation Exploit - HTTP (Response)
    HIGH
    2025/03/26DDI RULE 5359/vinfo/gb/threat-encyclopedia/network/ddi-rule-5359
    DDI RULE 5353 CVE-2024-45195 - APACHE OFBIZ RCE EXPLOIT - HTTP(Request)
    HIGH
    2025/03/17DDI RULE 5353/vinfo/gb/threat-encyclopedia/network/ddi-rule-5353
    DDI RULE 5349 SVCCTL Start Service - SMB2 (Request)
    HIGH
    2025/03/13DDI RULE 5349/vinfo/gb/threat-encyclopedia/network/ddi-rule-5349
    DDI RULE 5340 LBLINK COMMAND INJECTION EXPLOIT - HTTP (Request)
    HIGH
    2025/03/05DDI RULE 5340/vinfo/gb/threat-encyclopedia/network/ddi-rule-5340
    DDI RULE 5323 CVE-2024-49112 - INTEGER OVERFLOW EXPLOIT - LDAP (Response)
    HIGH
    2025/02/20DDI RULE 5323/vinfo/gb/threat-encyclopedia/network/ddi-rule-5323
    DDI RULE 5305 CVE-2024-42327 - Zabbix SQL Injection - HTTP (Response)
    HIGH
    2025/02/18DDI RULE 5305/vinfo/gb/threat-encyclopedia/network/ddi-rule-5305
    DDI RULE 5318 CVE-2025-0282 - IVANTI RCE EXPLOIT - HTTP(Request)
    HIGH
    2025/02/17DDI RULE 5318/vinfo/gb/threat-encyclopedia/network/ddi-rule-5318
    DDI RULE 5320 CVE-2025-0107 - Palo Alto Networks Expedition Insecure Deserialization Exploit - HTTP (Response)
    HIGH
    2025/02/17DDI RULE 5320/vinfo/gb/threat-encyclopedia/network/ddi-rule-5320
    DDI RULE 5316 CVE-2024-37404 - IVANTI RCE EXPLOIT - HTTP (Response)
    HIGH
    2025/02/12DDI RULE 5316/vinfo/gb/threat-encyclopedia/network/ddi-rule-5316
    DDI RULE 5314 ADCS Suspicious use of Certificate - Kerberos (Request)
    HIGH
    2025/02/11DDI RULE 5314/vinfo/gb/threat-encyclopedia/network/ddi-rule-5314
    DDI RULE 5312 CVE-2024-40711 - Veeam Backup & Replication Remote Command Execution Exploit - HTTP (Response)
    HIGH
    2025/02/06DDI RULE 5312/vinfo/gb/threat-encyclopedia/network/ddi-rule-5312
    DDI RULE 5310 CVE-2024-52047 - DIRECTORY TRAVERSAL EXPLOIT - HTTP (Request)
    HIGH
    2025/02/06DDI RULE 5310/vinfo/gb/threat-encyclopedia/network/ddi-rule-5310
    DDI RULE 5311 CVE-2022-22947 - SPRINGCLOUD RCE EXPLOIT - HTTP (Request)
    HIGH
    2025/02/05DDI RULE 5311/vinfo/gb/threat-encyclopedia/network/ddi-rule-5311
    DDI RULE 5303 CVE-2024-51378 - CYBERPANEL RCE EXPLOIT - HTTP (Request)
    HIGH
    2025/02/05DDI RULE 5303/vinfo/gb/threat-encyclopedia/network/ddi-rule-5303
    DDI RULE 5292 CVE-2024-47575 - FORTIMANAGER RCE EXPLOIT - HTTP (Response)
    HIGH
    2025/02/04DDI RULE 5292/vinfo/gb/threat-encyclopedia/network/ddi-rule-5292
    DDI RULE 5304 CVE-2024-12828 - WEBMIN RCE EXPLOIT - HTTP (Response)
    HIGH
    2025/01/30DDI RULE 5304/vinfo/gb/threat-encyclopedia/network/ddi-rule-5304
    DDI RULE 5306 CVE-2024-53691 - QNAP RCE - HTTP (Request)
    HIGH
    2025/01/30DDI RULE 5306/vinfo/gb/threat-encyclopedia/network/ddi-rule-5306
    DDI RULE 5307 CVE-2024-50388 - QNAP BACKUP EXPLOIT - HTTP(Request)
    HIGH
    2025/01/30DDI RULE 5307/vinfo/gb/threat-encyclopedia/network/ddi-rule-5307
    DDI RULE 5302 CVE-2024-8963 - IVANTI AUTH BYPASS EXPLOIT - HTTP (Response)
    HIGH
    2025/01/24DDI RULE 5302/vinfo/gb/threat-encyclopedia/network/ddi-rule-5302
    DDI RULE 5300 CVE-2024-29847 - IVANTI RCE EXPLOIT - TCP (Request)
    HIGH
    2025/01/22DDI RULE 5300/vinfo/gb/threat-encyclopedia/network/ddi-rule-5300
    DDI RULE 5301 CVE-2024-50603 - AVIATRIX COMMAND INJECTION - HTTP (Request)
    HIGH
    2025/01/21DDI RULE 5301/vinfo/gb/threat-encyclopedia/network/ddi-rule-5301
    DDI RULE 5246 Entropy Encoded Cookie Sensor - HTTP (Request)
    LOW
    2025/01/20DDI RULE 5246/vinfo/gb/threat-encyclopedia/network/ddi-rule-5246
    DDI RULE 5247 Base64 Encoded Cookie Sensor - HTTP (Request)
    LOW
    2025/01/20DDI RULE 5247/vinfo/gb/threat-encyclopedia/network/ddi-rule-5247
    DDI RULE 5299 HTTP Websocket Connection to External Server (Request)
    LOW
    2025/01/16DDI RULE 5299/vinfo/gb/threat-encyclopedia/network/ddi-rule-5299
    DDI RULE 5298 CVE-2024-5011 - WHATSUP GOLD EXPLOIT - HTTP (Request)
    HIGH
    2025/01/15DDI RULE 5298/vinfo/gb/threat-encyclopedia/network/ddi-rule-5298
    DDI RULE 1268 Reverse HTTPS Meterpreter detected - Variant 2
    HIGH
    2025/01/15DDI RULE 1268/vinfo/gb/threat-encyclopedia/network/ddi-rule-1268
    DDI RULE 2744 OMRON FINS UDP Read Controller Attempt NSE - UDP (Request)
    LOW
    2025/01/13DDI RULE 2744/vinfo/gb/threat-encyclopedia/network/ddi-rule-2744
    DDI RULE 5294 CVE-2024-38856 - OFBIZ AUTHBYPASS EXPLOIT - HTTP (Response)
    HIGH
    2025/01/08DDI RULE 5294/vinfo/gb/threat-encyclopedia/network/ddi-rule-5294
    DDI RULE 5289 CVE-2024-49122 - MSMQ RCE EXPLOIT - TCP (Response)
    HIGH
    2025/01/07DDI RULE 5289/vinfo/gb/threat-encyclopedia/network/ddi-rule-5289
    DDI RULE 5297 CVE-2024-49113 - WINDOWS LDAP DOS EXPLOIT - CLDAP(RESPONSE)
    HIGH
    2025/01/06DDI RULE 5297/vinfo/gb/threat-encyclopedia/network/ddi-rule-5297
    DDI RULE 5290 CVE-2024-9464 - PaloAlto Command Injection Exploit - HTTP (Request)
    HIGH
    2025/01/06DDI RULE 5290/vinfo/gb/threat-encyclopedia/network/ddi-rule-5290
    DDI RULE 5295 CVE-2024-50623 - CLEO DIRECTORY TRAVERSAL - HTTP (Request)
    HIGH
    2025/01/02DDI RULE 5295/vinfo/gb/threat-encyclopedia/network/ddi-rule-5295
    DDI RULE 5291 CVE-2024-25153 - Fortra FileCatalyst Workflow Directory Traversal Exploit - HTTP (Response)
    HIGH
    2024/12/19DDI RULE 5291/vinfo/gb/threat-encyclopedia/network/ddi-rule-5291
    DDI RULE 5293 CVE-2024-11320 - Pandora Remote Command Execution Exploit - HTTP (Response)
    HIGH
    2024/12/19DDI RULE 5293/vinfo/gb/threat-encyclopedia/network/ddi-rule-5293
    DDI RULE 5288 CVE-2024-46938 - Sitecore Directory Traversal Exploit - HTTP (Response)
    HIGH
    2024/12/19DDI RULE 5288/vinfo/gb/threat-encyclopedia/network/ddi-rule-5288
    DDI RULE 5287 Active Directory Certificate Services Template Discovery- LDAP (Request)
    HIGH
    2024/12/11DDI RULE 5287/vinfo/gb/threat-encyclopedia/network/ddi-rule-5287
    DDI RULE 5284 CVE-2024-34051 - DOLIBARR AC EXECUTION EXPLOIT - HTTP(REQUEST)
    HIGH
    2024/12/11DDI RULE 5284/vinfo/gb/threat-encyclopedia/network/ddi-rule-5284
    DDI RULE 5253 CVE-2024-29830 - IVANTI SQL INJECTION EXPLOIT - HTTP(REQUEST)
    HIGH
    2024/12/11DDI RULE 5253/vinfo/gb/threat-encyclopedia/network/ddi-rule-5253
    DDI RULE 5281 AD File and Directory Discovery - SMB2 (Request)
    MEDIUM
    2024/12/11DDI RULE 5281/vinfo/gb/threat-encyclopedia/network/ddi-rule-5281
    DDI RULE 4594 COBALTSTRIKE - HTTP(REQUEST) - Variant 3
    HIGH
    2024/12/11DDI RULE 4594/vinfo/gb/threat-encyclopedia/network/ddi-rule-4594
    DDI RULE 4861 COBEACON - DNS (Response) - Variant 3
    HIGH
    2024/12/11DDI RULE 4861/vinfo/gb/threat-encyclopedia/network/ddi-rule-4861
    DDI RULE 5283 CVE-2024-9264 - Grafana SQL Injection Exploit - HTTP (Response)
    HIGH
    2024/12/10DDI RULE 5283/vinfo/gb/threat-encyclopedia/network/ddi-rule-5283
    DDI RULE 5286 Possible Discovery Using NETSHAREENUM API - SMB2 (Request)
    HIGH
    2024/12/10DDI RULE 5286/vinfo/gb/threat-encyclopedia/network/ddi-rule-5286
    DDI RULE 5285 CVE-2024-1884 - PAPERCUT SSRF EXPLOIT - HTTP(REQUEST)
    HIGH
    2024/12/09DDI RULE 5285/vinfo/gb/threat-encyclopedia/network/ddi-rule-5285
    DDI RULE 5282 CVE-2024-43451 - WINDOWS NTLM RELAY EXPLOIT - HTTP (Response)
    HIGH
    2024/12/09DDI RULE 5282/vinfo/gb/threat-encyclopedia/network/ddi-rule-5282
    DDI RULE 4396 CVE-2020-1967 - Signature Algorithms Cert Denial of Service - HTTPS (Request)
    MEDIUM
    2024/12/09DDI RULE 4396/vinfo/gb/threat-encyclopedia/network/ddi-rule-4396
    DDI RULE 5279 CVE-2024-47525 - LIBRENMS XSS EXPLOIT - HTTP(REQUEST)
    HIGH
    2024/12/04DDI RULE 5279/vinfo/gb/threat-encyclopedia/network/ddi-rule-5279
    DDI RULE 5280 CVE-2024-42008 - Roundcube Information Disclosure Exploit - HTTP (Response)
    HIGH
    2024/12/03DDI RULE 5280/vinfo/gb/threat-encyclopedia/network/ddi-rule-5280
    DDI RULE 5276 CVE-2024-5010 - WHATSUP GOLD EXPLOIT - HTTP(REQUEST)
    HIGH
    2024/12/02DDI RULE 5276/vinfo/gb/threat-encyclopedia/network/ddi-rule-5276
    DDI RULE 5232 CVE-2024-45519 - ZIMBRA RCE EXPLOIT - SMTP (REQUEST)
    HIGH
    2024/12/02DDI RULE 5232/vinfo/gb/threat-encyclopedia/network/ddi-rule-5232
    DDI RULE 5278 CVE-2024-0012 - PALO ALTO AUTH BYPASS - HTTP (Request)
    HIGH
    2024/11/28DDI RULE 5278/vinfo/gb/threat-encyclopedia/network/ddi-rule-5278
    DDI RULE 5267 COVENANT Custom Profile - HTTP (Response) - Variant 2
    HIGH
    2024/11/27DDI RULE 5267/vinfo/gb/threat-encyclopedia/network/ddi-rule-5267
    DDI RULE 5274 Covenant Default Named Pipe - SMB2 (Request)
    HIGH
    2024/11/26DDI RULE 5274/vinfo/gb/threat-encyclopedia/network/ddi-rule-5274
    DDI RULE 5269 SALITY C2 - TCP (REQUEST)
    HIGH
    2024/11/21DDI RULE 5269/vinfo/gb/threat-encyclopedia/network/ddi-rule-5269
    DDI RULE 5271 CVE-2024-43572 - Microsoft Windows Management Console RCE Exploit - HTTP (Response)
    HIGH
    2024/11/21DDI RULE 5271/vinfo/gb/threat-encyclopedia/network/ddi-rule-5271
    DDI RULE 5268 CVE-2024-7591 - Progress Kemp LoadMaster Command Injection Exploit - HTTP (Request)
    HIGH
    2024/11/19DDI RULE 5268/vinfo/gb/threat-encyclopedia/network/ddi-rule-5268
    DDI RULE 5264 CVE-2024-51567 - CYBERPANEL RCE EXPLOIT - HTTP (Request)
    HIGH
    2024/11/19DDI RULE 5264/vinfo/gb/threat-encyclopedia/network/ddi-rule-5264
    DDI RULE 5245 CVE-2024-6457 - WORDPRESS EXPLOIT - HTTP (Request)
    HIGH
    2024/11/19DDI RULE 5245/vinfo/gb/threat-encyclopedia/network/ddi-rule-5245
    DDI RULE 5256 COVENANT Default - HTTP (Response)
    HIGH
    2024/11/14DDI RULE 5256/vinfo/gb/threat-encyclopedia/network/ddi-rule-5256
    DDI RULE 5258 CVE-2024-9465 - PALOALTO EXPEDITION EXPLOIT - HTTP (Response)
    HIGH
    2024/11/14DDI RULE 5258/vinfo/gb/threat-encyclopedia/network/ddi-rule-5258
    DDI RULE 5265 CVE-2024-40711 - VEEAM BACKUP RCE EXPLOIT - TCP (Request)
    HIGH
    2024/11/14DDI RULE 5265/vinfo/gb/threat-encyclopedia/network/ddi-rule-5265
    DDI RULE 5263 CVE-2024-41874 - ADOBE COLDFUSION RCE EXPLOIT - HTTP (Response)
    HIGH
    2024/11/13DDI RULE 5263/vinfo/gb/threat-encyclopedia/network/ddi-rule-5263
    DDI RULE 5262 CoreWarrior Exfiltration - HTTP (Request)
    HIGH
    2024/11/12DDI RULE 5262/vinfo/gb/threat-encyclopedia/network/ddi-rule-5262
    DDI RULE 5259 FAKEWIN - HTTP (Request)
    HIGH
    2024/11/11DDI RULE 5259/vinfo/gb/threat-encyclopedia/network/ddi-rule-5259
    DDI RULE 5260 RCSHELL BACKDOOR - HTTP (Request)
    HIGH
    2024/11/11DDI RULE 5260/vinfo/gb/threat-encyclopedia/network/ddi-rule-5260
    DDI RULE 5261 HORUS PROTECTOR C2 - TCP (Response)
    HIGH
    2024/11/11DDI RULE 5261/vinfo/gb/threat-encyclopedia/network/ddi-rule-5261
    DDI RULE 5257 CVE-2024-28988 - SOLARWINDS RCE EXPLOIT - HTTP (Response)
    HIGH
    2024/11/07DDI RULE 5257/vinfo/gb/threat-encyclopedia/network/ddi-rule-5257
    DDI RULE 5081 CVE-2024-36401 - GEOSERVER EXPLOIT - HTTP (REQUEST)
    HIGH
    2024/11/06DDI RULE 5081/vinfo/gb/threat-encyclopedia/network/ddi-rule-5081
    DDI RULE 4484 GOLDENSPY - HTTP (REQUEST)
    HIGH
    2024/11/06DDI RULE 4484/vinfo/gb/threat-encyclopedia/network/ddi-rule-4484
    DDI RULE 4219 GHOSTMINER - HTTP (Request)
    HIGH
    2024/11/06DDI RULE 4219/vinfo/gb/threat-encyclopedia/network/ddi-rule-4219
    DDI RULE 4572 GLUPTEBA - HTTP (REQUEST)
    HIGH
    2024/11/06DDI RULE 4572/vinfo/gb/threat-encyclopedia/network/ddi-rule-4572
    DDI RULE 5139 PYC Download - HTTP (Response)
    LOW
    2024/11/05DDI RULE 5139/vinfo/gb/threat-encyclopedia/network/ddi-rule-5139
    DDI RULE 5140 Python Download - HTTP (Response)
    LOW
    2024/11/05DDI RULE 5140/vinfo/gb/threat-encyclopedia/network/ddi-rule-5140
    DDI RULE 5254 Possible Domain Controller List Discovery - DCERPC (Request)
    HIGH
    2024/11/04DDI RULE 5254/vinfo/gb/threat-encyclopedia/network/ddi-rule-5254
    DDI RULE 1770 GHOLE - HTTP (Request)
    HIGH
    2024/11/04DDI RULE 1770/vinfo/gb/threat-encyclopedia/network/ddi-rule-1770
    DDI RULE 5243 WebDAV Successful File Download - HTTP (Response)
    HIGH
    2024/10/29DDI RULE 5243/vinfo/gb/threat-encyclopedia/network/ddi-rule-5243
    DDI RULE 5244 WebDAV Unsuccessful File Download - HTTP (Response)
    HIGH
    2024/10/29DDI RULE 5244/vinfo/gb/threat-encyclopedia/network/ddi-rule-5244
    DDI RULE 5249 KeyLogEXE Exfiltration - HTTP (Request)
    HIGH
    2024/10/28DDI RULE 5249/vinfo/gb/threat-encyclopedia/network/ddi-rule-5249
    DDI RULE 5250 C2 SHELLCODE Transfer - HTTP (Response)
    LOW
    2024/10/24DDI RULE 5250/vinfo/gb/threat-encyclopedia/network/ddi-rule-5250
    DDI RULE 5251 REMCOS DOWNLOADER - HTTP (Request)
    HIGH
    2024/10/24DDI RULE 5251/vinfo/gb/threat-encyclopedia/network/ddi-rule-5251
    DDI RULE 5252 CONOLEATHLOADER - HTTP (Request)
    HIGH
    2024/10/24DDI RULE 5252/vinfo/gb/threat-encyclopedia/network/ddi-rule-5252
    DDI RULE 5248 URIVAR EXFILTRATION - HTTP(REQUEST)
    LOW
    2024/10/24DDI RULE 5248/vinfo/gb/threat-encyclopedia/network/ddi-rule-5248
    DDI RULE 5238 CVE-2024-32766 - PRIVWIZARD INJECTION EXPLOIT - HTTP (Request)
    HIGH
    2024/10/22DDI RULE 5238/vinfo/gb/threat-encyclopedia/network/ddi-rule-5238
    DDI RULE 1886 Data Exfiltration - DNS (Response)
    LOW
    2024/10/22DDI RULE 1886/vinfo/gb/threat-encyclopedia/network/ddi-rule-1886
    DDI RULE 5240 CVE-2024-5932 - WordPress RCE Exploit - HTTP (Request)
    HIGH
    2024/10/17DDI RULE 5240/vinfo/gb/threat-encyclopedia/network/ddi-rule-5240
    DDI RULE 5231 CVE-2024-32842 - Ivanti Endpoint Manager SQL Injection Exploit - HTTP (Response)
    HIGH
    2024/10/16DDI RULE 5231/vinfo/gb/threat-encyclopedia/network/ddi-rule-5231
    DDI RULE 5242 CVE-2024-5932 - GIVEWP RCE EXPLOIT - HTTP (Request)
    HIGH
    2024/10/16DDI RULE 5242/vinfo/gb/threat-encyclopedia/network/ddi-rule-5242
    DDI RULE 5241 CVE-2024-37397 - Ivanti EPM Improper Restriction of XML External Entity Exploit - HTTP (Response)
    HIGH
    2024/10/15DDI RULE 5241/vinfo/gb/threat-encyclopedia/network/ddi-rule-5241
    DDI RULE 5230 CVE-2024-32845 - Ivanti Endpoint Manager SQL Injection Exploit - HTTP (Response)
    HIGH
    2024/10/15DDI RULE 5230/vinfo/gb/threat-encyclopedia/network/ddi-rule-5230
    DDI RULE 5239 SYSTEMBC Shellcode Download - HTTP (Response)
    HIGH
    2024/10/14DDI RULE 5239/vinfo/gb/threat-encyclopedia/network/ddi-rule-5239
    DDI RULE 5229 Advanced Port Scanner - HTTP (Request)
    HIGH
    2024/10/10DDI RULE 5229/vinfo/gb/threat-encyclopedia/network/ddi-rule-5229
    DDI RULE 5233 CVE-2024-32846 - IVANTI SQL INJECTION EXPLOIT - HTTP (RESPONSE)
    HIGH
    2024/10/10DDI RULE 5233/vinfo/gb/threat-encyclopedia/network/ddi-rule-5233
    DDI RULE 5234 CVE-2024-32843 - IVANTI SQL INJECTION EXPLOIT - HTTP (RESPONSE)
    HIGH
    2024/10/10DDI RULE 5234/vinfo/gb/threat-encyclopedia/network/ddi-rule-5234
    DDI RULE 5235 CVE-2024-34779 - IVANTI SQL INJECTION EXPLOIT - HTTP (RESPONSE)
    HIGH
    2024/10/10DDI RULE 5235/vinfo/gb/threat-encyclopedia/network/ddi-rule-5235
    DDI RULE 5236 CVE-2024-34785 - IVANTI SQL INJECTION EXPLOIT - HTTP (RESPONSE)
    HIGH
    2024/10/10DDI RULE 5236/vinfo/gb/threat-encyclopedia/network/ddi-rule-5236
    DDI RULE 5237 SYSTEMBC C2 - HTTP (Request)
    HIGH
    2024/10/10DDI RULE 5237/vinfo/gb/threat-encyclopedia/network/ddi-rule-5237
    DDI RULE 5227 VALLEYRAT C2 - TCP (Response)
    HIGH
    2024/10/09DDI RULE 5227/vinfo/gb/threat-encyclopedia/network/ddi-rule-5227
    DDI RULE 5228 Advanced IP Scanner - HTTP (Request)
    HIGH
    2024/10/09DDI RULE 5228/vinfo/gb/threat-encyclopedia/network/ddi-rule-5228
    DDI RULE 5225 ONCESVC C2 - HTTP (Response)
    HIGH
    2024/10/08DDI RULE 5225/vinfo/gb/threat-encyclopedia/network/ddi-rule-5225
    DDI RULE 5226 CVE-2024-6497 - SQUIRLLY EXPLOIT - HTTP (Request)
    HIGH
    2024/10/08DDI RULE 5226/vinfo/gb/threat-encyclopedia/network/ddi-rule-5226
    DDI RULE 5223 LUMMAC - HTTP (Request)
    HIGH
    2024/10/03DDI RULE 5223/vinfo/gb/threat-encyclopedia/network/ddi-rule-5223
    DDI RULE 5221 CVE-2024-47177 - CUPS PRINTING RCE EXPLOIT - HTTP (REQUEST)
    HIGH
    2024/10/03DDI RULE 5221/vinfo/gb/threat-encyclopedia/network/ddi-rule-5221
    DDI RULE 5222 CVE-2024-2876 - WORDPRESS SQL INJECTION EXPLOIT - HTTP (Request)
    HIGH
    2024/10/02DDI RULE 5222/vinfo/gb/threat-encyclopedia/network/ddi-rule-5222
    DDI RULE 5217 CVE-2024-8190 - Ivanti Cloud Service Appliance Authenticated Command Injection Exploit - HTTP (Response)
    HIGH
    2024/10/02DDI RULE 5217/vinfo/gb/threat-encyclopedia/network/ddi-rule-5217
    DDI RULE 5218 CVE-2020-8599 - Trend Micro Apex One and OfficeScan Directory Traversal Exploit - HTTP (Request)
    HIGH
    2024/10/01DDI RULE 5218/vinfo/gb/threat-encyclopedia/network/ddi-rule-5218
    DDI RULE 5219 CVE-2024-38077 - MS RDL RCE EXPLOIT - DCERPC (Request)
    HIGH
    2024/10/01DDI RULE 5219/vinfo/gb/threat-encyclopedia/network/ddi-rule-5219
    DDI RULE 5220 CVE-2024-6670 - WhatsUp SQL Injection Exploit - HTTP (Response)
    HIGH
    2024/10/01DDI RULE 5220/vinfo/gb/threat-encyclopedia/network/ddi-rule-5220
    DDI RULE 5216 Possible Generic Database Query - MySQL (Request)
    MEDIUM
    2024/09/26DDI RULE 5216/vinfo/gb/threat-encyclopedia/network/ddi-rule-5216
    DDI RULE 5206 Remote Access Tool VNC - VNC (Response)
    HIGH
    2024/09/23DDI RULE 5206/vinfo/gb/threat-encyclopedia/network/ddi-rule-5206
    DDI RULE 5207 Remote Access Tool RealVNC - VNC (Response)
    HIGH
    2024/09/23DDI RULE 5207/vinfo/gb/threat-encyclopedia/network/ddi-rule-5207
    DDI RULE 5208 Remote Access Tool TightVNC - VNC (Response)
    HIGH
    2024/09/23DDI RULE 5208/vinfo/gb/threat-encyclopedia/network/ddi-rule-5208
    DDI RULE 5209 Remote Access Tool UltraVNC - VNC (Response)
    HIGH
    2024/09/23DDI RULE 5209/vinfo/gb/threat-encyclopedia/network/ddi-rule-5209
    DDI RULE 5214 CVE-2024-5505 - NETGEAR TRAVERSAL EXPLOIT - HTTP (REQUEST)
    HIGH
    2024/09/17DDI RULE 5214/vinfo/gb/threat-encyclopedia/network/ddi-rule-5214
    DDI RULE 5215 CVE-2024-43461 - MSHTML SPOOFING EXPLOIT - HTTP (RESPONSE)
    HIGH
    2024/09/17DDI RULE 5215/vinfo/gb/threat-encyclopedia/network/ddi-rule-5215
    DDI RULE 5082 CVE-2024-32113 - Apache OFBiz Directory Traversal Exploit - HTTP (Request)
    HIGH
    2024/09/16DDI RULE 5082/vinfo/gb/threat-encyclopedia/network/ddi-rule-5082
    DDI RULE 5212 CVE-2023-51364 - QNAP RCE EXPLOIT - HTTP (RESPONSE)
    HIGH
    2024/09/12DDI RULE 5212/vinfo/gb/threat-encyclopedia/network/ddi-rule-5212
    DDI RULE 5213 WebP Image Sensor - HTTP (Response)
    HIGH
    2024/09/12DDI RULE 5213/vinfo/gb/threat-encyclopedia/network/ddi-rule-5213
    DDI RULE 5211 CVE-2023-38205 - Adobe ColdFusion Policy Bypass Exploit - HTTP (Request)
    HIGH
    2024/09/11DDI RULE 5211/vinfo/gb/threat-encyclopedia/network/ddi-rule-5211
    DDI RULE 5210 Metasploit Web Delivery through PowerShell - HTTP (Response)
    MEDIUM
    2024/09/10DDI RULE 5210/vinfo/gb/threat-encyclopedia/network/ddi-rule-5210
    DDI RULE 2793 APT - WINNTI - HTTP (Response)
    HIGH
    2024/09/09DDI RULE 2793/vinfo/gb/threat-encyclopedia/network/ddi-rule-2793
    DDI RULE 5203 CVE-2024-5721 - LOGSIGN RCE EXPLOIT - HTTP (RESPONSE)
    HIGH
    2024/09/05DDI RULE 5203/vinfo/gb/threat-encyclopedia/network/ddi-rule-5203
    DDI RULE 5204 CVE-2024-7928 - FASTADMIN TRAVERSAL EXPLOIT - HTTP (RESPONSE)
    HIGH
    2024/09/05DDI RULE 5204/vinfo/gb/threat-encyclopedia/network/ddi-rule-5204
    DDI RULE 5205 CVE-2024-29826 - IVANTI ENDPOINT RCE EXPLOIT - HTTP (REQUEST)
    HIGH
    2024/09/05DDI RULE 5205/vinfo/gb/threat-encyclopedia/network/ddi-rule-5205
    DDI RULE 5200 CVE-2024-38652 - IVANTI TRAVERSAL EXPLOIT - HTTP (RESPONSE)
    HIGH
    2024/09/04DDI RULE 5200/vinfo/gb/threat-encyclopedia/network/ddi-rule-5200
    DDI RULE 5202 MAGICRAT EXFIL - HTTP(REQUEST)
    HIGH
    2024/09/04DDI RULE 5202/vinfo/gb/threat-encyclopedia/network/ddi-rule-5202
    DDI RULE 5097 CVE-2023-27532 - Veeam Backup and Replication Backup Service Authentication Bypass Exploit - TCP (Request)
    HIGH
    2024/09/04DDI RULE 5097/vinfo/gb/threat-encyclopedia/network/ddi-rule-5097
    DDI RULE 4345 EMOTET - HTTP (Request) - Variant 7
    HIGH
    2024/09/03DDI RULE 4345/vinfo/gb/threat-encyclopedia/network/ddi-rule-4345
    DDI RULE 5098 JUPITERRAT - HTTP (REQUEST)
    HIGH
    2024/08/29DDI RULE 5098/vinfo/gb/threat-encyclopedia/network/ddi-rule-5098
    DDI RULE 5099 FAKEBAT DOWNLOADER - HTTP(REQUEST)
    HIGH
    2024/08/29DDI RULE 5099/vinfo/gb/threat-encyclopedia/network/ddi-rule-5099
    DDI RULE 5090 CVE-2021-26858 - Possible MS Exchange SSRF Exploit - HTTP (Response)
    LOW
    2024/08/28DDI RULE 5090/vinfo/gb/threat-encyclopedia/network/ddi-rule-5090
    DDI RULE 5096 ZOMBIEDROP - HTTP (REQUEST)
    HIGH
    2024/08/27DDI RULE 5096/vinfo/gb/threat-encyclopedia/network/ddi-rule-5096
    DDI RULE 5095 CVE-2024-4885 - WHATSUP GOLD TRAVERSAL EXPLOIT - HTTP (REQUEST)
    HIGH
    2024/08/22DDI RULE 5095/vinfo/gb/threat-encyclopedia/network/ddi-rule-5095
    DDI RULE 5075 CVE-2024-49606 - TINYPROXY RCE EXPLOIT - HTTP (REQUEST)
    HIGH
    2024/08/22DDI RULE 5075/vinfo/gb/threat-encyclopedia/network/ddi-rule-5075
    DDI RULE 5092 CVE-2024-7120 - RAISECOM COMMAND INJECTION EXPLOIT - HTTP (RESPONSE)
    HIGH
    2024/08/20DDI RULE 5092/vinfo/gb/threat-encyclopedia/network/ddi-rule-5092
    DDI RULE 5093 Prometei C2 - HTTP (Request)
    HIGH
    2024/08/20DDI RULE 5093/vinfo/gb/threat-encyclopedia/network/ddi-rule-5093
    DDI RULE 5094 Possible STEALBIT Exfiltration - HTTP (Request)
    MEDIUM
    2024/08/20DDI RULE 5094/vinfo/gb/threat-encyclopedia/network/ddi-rule-5094
    DDI RULE 5091 RUTHENS ENCRYPTION - SMB2 (REQUEST)
    HIGH
    2024/08/19DDI RULE 5091/vinfo/gb/threat-encyclopedia/network/ddi-rule-5091
    DDI RULE 5087 DAMEWARE RCE EXPLOIT - HTTP (REQUEST)
    HIGH
    2024/08/15DDI RULE 5087/vinfo/gb/threat-encyclopedia/network/ddi-rule-5087
    DDI RULE 5088 Possible Faker Generated Self-Signed Certificate - HTTPS
    MEDIUM
    2024/08/14DDI RULE 5088/vinfo/gb/threat-encyclopedia/network/ddi-rule-5088
    DDI RULE 5089 COBEACON Default Named Pipe - SMB2 (Request) - Variant 2
    MEDIUM
    2024/08/14DDI RULE 5089/vinfo/gb/threat-encyclopedia/network/ddi-rule-5089
    DDI RULE 5085 CVE-2024-5008 - WHATSUP GOLD RCE EXPLOIT - HTTP (REQUEST)
    HIGH
    2024/08/13DDI RULE 5085/vinfo/gb/threat-encyclopedia/network/ddi-rule-5085
    DDI RULE 5086 CVE-2019-0708 - Microsoft Windows Remote Desktop Services Remote Code Execution Exploit - TCP (Request)
    HIGH
    2024/08/13DDI RULE 5086/vinfo/gb/threat-encyclopedia/network/ddi-rule-5086
    DDI RULE 5079 CVE-2023-42000 - Arcserve Unified Data Protection Path Traversal Exploit - HTTP (Request)
    HIGH
    2024/08/12DDI RULE 5079/vinfo/gb/threat-encyclopedia/network/ddi-rule-5079
    DDI RULE 5084 CVE-2024-4883 - Progress WhatsUp Gold Traversal Exploit - TCP (Request)
    HIGH
    2024/08/12DDI RULE 5084/vinfo/gb/threat-encyclopedia/network/ddi-rule-5084
    DDI RULE 5083 CVE-2024-38856 - APACHE OFBIZ RCE EXPLOIT - HTTP (Request)
    HIGH
    2024/08/09DDI RULE 5083/vinfo/gb/threat-encyclopedia/network/ddi-rule-5083
    DDI RULE 5072 ADRECON QUERY - LDAP(Request)
    LOW
    2024/08/09DDI RULE 5072/vinfo/gb/threat-encyclopedia/network/ddi-rule-5072
    DDI RULE 5077 CVE-2024-2863 - LG LED Directory Traversal Exploit - HTTP (Request)
    HIGH
    2024/08/05DDI RULE 5077/vinfo/gb/threat-encyclopedia/network/ddi-rule-5077
    DDI RULE 5078 CVE-2024-36991 - Splunk Directory Traversal Exploit - HTTP (Response)
    HIGH
    2024/08/05DDI RULE 5078/vinfo/gb/threat-encyclopedia/network/ddi-rule-5078
    DDI RULE 5076 CVE-2024-4879 - ServiceNow Template Injection Exploit - HTTP (Response)
    HIGH
    2024/08/01DDI RULE 5076/vinfo/gb/threat-encyclopedia/network/ddi-rule-5076
    DDI RULE 5074 CVE-2024-5015 - WHATSUP SSRF EXPLOIT - HTTP (REQUEST)
    HIGH
    2024/08/01DDI RULE 5074/vinfo/gb/threat-encyclopedia/network/ddi-rule-5074
    DDI RULE 5073 CVE-2024-38112 - MSHTML RCE EXPLOIT - SMB2 (REQUEST)
    HIGH
    2024/07/31DDI RULE 5073/vinfo/gb/threat-encyclopedia/network/ddi-rule-5073
    DDI RULE 4886 TRUEBOT - HTTP (REQUEST) - Variant 2
    HIGH
    2024/07/31DDI RULE 4886/vinfo/gb/threat-encyclopedia/network/ddi-rule-4886
    DDI RULE 5063 CVE-2024-5806 - MOVEit Authentication Bypass Exploit - HTTP(Request)
    HIGH
    2024/07/29DDI RULE 5063/vinfo/gb/threat-encyclopedia/network/ddi-rule-5063
    DDI RULE 5067 CVE-2024-4358 - TELERIK AUTHBYPASS EXPLOIT - HTTP (REQUEST)
    HIGH
    2024/07/25DDI RULE 5067/vinfo/gb/threat-encyclopedia/network/ddi-rule-5067
    DDI RULE 5068 CVE-2024-37389 - APACHE NIFI EXPLOIT - HTTP (REQUEST)
    HIGH
    2024/07/25DDI RULE 5068/vinfo/gb/threat-encyclopedia/network/ddi-rule-5068
    DDI RULE 5069 PHP DEV EXPLOIT - HTTP (REQUEST)
    HIGH
    2024/07/25DDI RULE 5069/vinfo/gb/threat-encyclopedia/network/ddi-rule-5069
    DDI RULE 5070 CVE-2024-27348 - APACHE HUGEGRAPH RCE EXPLOIT - HTTP (REQUEST)
    HIGH
    2024/07/25DDI RULE 5070/vinfo/gb/threat-encyclopedia/network/ddi-rule-5070
    DDI RULE 5071 RC4 Encryption in Pre-Authentication - Kerberos (Request)
    MEDIUM
    2024/07/25DDI RULE 5071/vinfo/gb/threat-encyclopedia/network/ddi-rule-5071
    DDI RULE 5064 CVE-2024-38112 - MSHTML RCE EXPLOIT - HTTP (RESPONSE)
    HIGH
    2024/07/24DDI RULE 5064/vinfo/gb/threat-encyclopedia/network/ddi-rule-5064
    DDI RULE 5065 CVE-2024-28995 - DIRECTORY TRAVERSAL EXPLOIT - HTTP (REQUEST)
    HIGH
    2024/07/24DDI RULE 5065/vinfo/gb/threat-encyclopedia/network/ddi-rule-5065
    DDI RULE 5066 CVE-2024-4040 - CRUSHFTP RCE EXPLOIT - HTTP (REQUEST)
    HIGH
    2024/07/24DDI RULE 5066/vinfo/gb/threat-encyclopedia/network/ddi-rule-5066
    DDI RULE 4682 MULTIPLE LATERAL MOVEMENT - SMB2(REQUEST)
    LOW
    2024/07/23DDI RULE 4682/vinfo/gb/threat-encyclopedia/network/ddi-rule-4682
    DDI RULE 5052 CVE-2024-0769 - D-Link Directory Traversal Exploit - HTTP (Response)
    HIGH
    2024/07/18DDI RULE 5052/vinfo/gb/threat-encyclopedia/network/ddi-rule-5052
    DDI RULE 5059 POSSIBLE KIMSUKY C2 - HTTP (Request)
    MEDIUM
    2024/07/18DDI RULE 5059/vinfo/gb/threat-encyclopedia/network/ddi-rule-5059
    DDI RULE 5061 CVE-2024-21683 - Atlassian Confluence Server RCE Exploit - HTTP (Request)
    HIGH
    2024/07/17DDI RULE 5061/vinfo/gb/threat-encyclopedia/network/ddi-rule-5061
    DDI RULE 5062 CVE-2024-23692 - Rejetto HTTP File Server Command Injection Exploit - HTTP (Response)
    HIGH
    2024/07/16DDI RULE 5062/vinfo/gb/threat-encyclopedia/network/ddi-rule-5062
    DDI RULE 5060 HNAP RCE EXPLOIT - HTTP (Request)
    HIGH
    2024/07/16DDI RULE 5060/vinfo/gb/threat-encyclopedia/network/ddi-rule-5060
    DDI RULE 5057 PRIVATELOADER C2 - HTTP (Request)
    HIGH
    2024/07/16DDI RULE 5057/vinfo/gb/threat-encyclopedia/network/ddi-rule-5057
    DDI RULE 5027 Telegram Bot API Sensor - HTTP (Response)
    MEDIUM
    2024/07/16DDI RULE 5027/vinfo/gb/threat-encyclopedia/network/ddi-rule-5027
    DDI RULE 5058 KOI LOADER C2 - HTTP (Request)
    HIGH
    2024/07/15DDI RULE 5058/vinfo/gb/threat-encyclopedia/network/ddi-rule-5058
    DDI RULE 5053 HTA File Download Root Directory Sensor- HTTP(RESPONSE)
    HIGH
    2024/07/15DDI RULE 5053/vinfo/gb/threat-encyclopedia/network/ddi-rule-5053
    DDI RULE 5054 HTA File Download Sub Root Directory Sensor - HTTP(RESPONSE)
    MEDIUM
    2024/07/15DDI RULE 5054/vinfo/gb/threat-encyclopedia/network/ddi-rule-5054
    DDI RULE 5055 SH File Download Root Directory Sensor- HTTP(RESPONSE)
    HIGH
    2024/07/15DDI RULE 5055/vinfo/gb/threat-encyclopedia/network/ddi-rule-5055
    DDI RULE 5056 SH File Download Sub Root Directory Sensor - HTTP(RESPONSE)
    MEDIUM
    2024/07/15DDI RULE 5056/vinfo/gb/threat-encyclopedia/network/ddi-rule-5056
    DDI RULE 5047 CVE-2021-20837 - Movable Type XMLRPC Command Injection Exploit - HTTP (Response)
    HIGH
    2024/07/11DDI RULE 5047/vinfo/gb/threat-encyclopedia/network/ddi-rule-5047
    DDI RULE 5050 ISO File Download Sensor - HTTP (Response)
    LOW
    2024/07/11DDI RULE 5050/vinfo/gb/threat-encyclopedia/network/ddi-rule-5050
    DDI RULE 5049 APT - DARKPINK Exfiltration - SMTP (Request)
    MEDIUM
    2024/07/10DDI RULE 5049/vinfo/gb/threat-encyclopedia/network/ddi-rule-5049
    DDI RULE 5051 AMADEY C2 - HTTP (Request)
    HIGH
    2024/07/09DDI RULE 5051/vinfo/gb/threat-encyclopedia/network/ddi-rule-5051
    DDI RULE 4449 Remote Service execution through SMB2 SVCCTL detected - Variant 3
    HIGH
    2024/07/05DDI RULE 4449/vinfo/gb/threat-encyclopedia/network/ddi-rule-4449
    DDI RULE 5048 METASPLOIT (Payload) - Reverse HTTP Encrypted - HTTP (Response)
    MEDIUM
    2024/07/03DDI RULE 5048/vinfo/gb/threat-encyclopedia/network/ddi-rule-5048
    DDI RULE 5046 Exfiltration SSH Private Key - HTTP (Response)
    HIGH
    2024/06/24DDI RULE 5046/vinfo/gb/threat-encyclopedia/network/ddi-rule-5046
    DDI RULE 5045 CVE-2024-4577 - PHP CGI Argument Injection Remote Code Execution - HTTP (Request)
    HIGH
    2024/06/19DDI RULE 5045/vinfo/gb/threat-encyclopedia/network/ddi-rule-5045
    DDI RULE 5044 CVE-2024-24919 - Check Point Information Disclosure Exploit - HTTP (Response)
    HIGH
    2024/06/19DDI RULE 5044/vinfo/gb/threat-encyclopedia/network/ddi-rule-5044
    DDI RULE 5033 METASPLOIT (Payload) - Reverse TCP Encrypted - TCP (Response)
    MEDIUM
    2024/06/13DDI RULE 5033/vinfo/gb/threat-encyclopedia/network/ddi-rule-5033
    DDI RULE 5043 Gomir C2 - HTTP (Request)
    HIGH
    2024/06/04DDI RULE 5043/vinfo/gb/threat-encyclopedia/network/ddi-rule-5043
    DDI RULE 5042 CVE-2024-4956 - Nexus Repository 3 Path Traversal Exploit - HTTP (Response)
    HIGH
    2024/05/30DDI RULE 5042/vinfo/gb/threat-encyclopedia/network/ddi-rule-5042
    DDI RULE 5035 JSOUTPROX - HTTP (REQUEST)
    HIGH
    2024/05/29DDI RULE 5035/vinfo/gb/threat-encyclopedia/network/ddi-rule-5035
    DDI RULE 5037 CVE-2024-3272 - D-LINK NAS devices Hardcoded Credential Exploit - HTTP (Request)
    HIGH
    2024/05/29DDI RULE 5037/vinfo/gb/threat-encyclopedia/network/ddi-rule-5037
    DDI RULE 5038 CVE-2024-3273 - D-LINK NAS devices Command Injection Exploit - HTTP (Request)
    HIGH
    2024/05/29DDI RULE 5038/vinfo/gb/threat-encyclopedia/network/ddi-rule-5038
    DDI RULE 5039 SOAP API RCE - HTTP (Request)
    HIGH
    2024/05/29DDI RULE 5039/vinfo/gb/threat-encyclopedia/network/ddi-rule-5039
    DDI RULE 5040 DLINK RCE - HTTP (Request)
    HIGH
    2024/05/29DDI RULE 5040/vinfo/gb/threat-encyclopedia/network/ddi-rule-5040
    DDI RULE 5041 IDB EXFILTRATION - HTTP(REQUEST)
    HIGH
    2024/05/29DDI RULE 5041/vinfo/gb/threat-encyclopedia/network/ddi-rule-5041
    DDI RULE 5034 TINYNUKE DOWNLOADER - HTTP (REQUEST)
    HIGH
    2024/05/27DDI RULE 5034/vinfo/gb/threat-encyclopedia/network/ddi-rule-5034
    DDI RULE 5031 CVE-2022-30333 - RARLab UnRAR Directory Traversal Exploit - HTTP (Response)
    HIGH
    2024/05/27DDI RULE 5031/vinfo/gb/threat-encyclopedia/network/ddi-rule-5031
    DDI RULE 5036 MELTED Hidden VNC - TCP (REQUEST)
    HIGH
    2024/05/27DDI RULE 5036/vinfo/gb/threat-encyclopedia/network/ddi-rule-5036
    DDI RULE 5032 Copy BAT Files - SMB2 (Request)
    LOW
    2024/05/21DDI RULE 5032/vinfo/gb/threat-encyclopedia/network/ddi-rule-5032
    DDI RULE 5030 MIMIC C2 - HTTP (Request)
    MEDIUM
    2024/05/15DDI RULE 5030/vinfo/gb/threat-encyclopedia/network/ddi-rule-5030
    DDI RULE 4887 COBALTSTRIKE - HTTP (REQUEST) - Variant 4
    HIGH
    2024/05/09DDI RULE 4887/vinfo/gb/threat-encyclopedia/network/ddi-rule-4887
    DDI RULE 5028 EVILPROXY - HTTP (Response)
    HIGH
    2024/05/07DDI RULE 5028/vinfo/gb/threat-encyclopedia/network/ddi-rule-5028
    DDI RULE 5024 CVE-2024-31138 - JetBrains TeamCity Cross-Site Scripting Exploit - HTTP (Request)
    HIGH
    2024/05/06DDI RULE 5024/vinfo/gb/threat-encyclopedia/network/ddi-rule-5024
    DDI RULE 5025 CVE-2024-24401 - Nagios XI SQL Injection Exploit - HTTP (Response)
    HIGH
    2024/05/06DDI RULE 5025/vinfo/gb/threat-encyclopedia/network/ddi-rule-5025
    DDI RULE 5026 POSSIBLE GOOTLOADER C2 - HTTP (Response)
    MEDIUM
    2024/05/06DDI RULE 5026/vinfo/gb/threat-encyclopedia/network/ddi-rule-5026
    DDI RULE 5023 BATLOADER C2 - HTTP (Request)
    MEDIUM
    2024/04/29DDI RULE 5023/vinfo/gb/threat-encyclopedia/network/ddi-rule-5023
    DDI RULE 5021 CVE-2023-48788 - FortiClientEMS SQL Injection Exploit - TCP (Request)
    HIGH
    2024/04/18DDI RULE 5021/vinfo/gb/threat-encyclopedia/network/ddi-rule-5021
    DDI RULE 5022 CVE-2024-3400 - Palo Alto Command Injection Exploit - HTTP (Request)
    HIGH
    2024/04/17DDI RULE 5022/vinfo/gb/threat-encyclopedia/network/ddi-rule-5022
    DDI RULE 5020 BUNNYLOADER - HTTP (REQUEST)
    HIGH
    2024/04/15DDI RULE 5020/vinfo/gb/threat-encyclopedia/network/ddi-rule-5020
    DDI RULE 5017 CVE-2024-20767 - Cold Fusion Directory Traversal Exploit - HTTP (Response)
    HIGH
    2024/04/08DDI RULE 5017/vinfo/gb/threat-encyclopedia/network/ddi-rule-5017
    DDI RULE 5018 CVE-2023-32315 - Ignite Realtime Openfire Directory Traversal Exploit - HTTP (Response)
    HIGH
    2024/04/08DDI RULE 5018/vinfo/gb/threat-encyclopedia/network/ddi-rule-5018
    DDI RULE 5019 CVE-2023-42793 - Teamcity Server - HTTP(Response)
    HIGH
    2024/04/08DDI RULE 5019/vinfo/gb/threat-encyclopedia/network/ddi-rule-5019
    DDI RULE 5016 Raccoon Stealer - HTTP (Request)
    HIGH
    2024/04/02DDI RULE 5016/vinfo/gb/threat-encyclopedia/network/ddi-rule-5016
    DDI RULE 5015 COMEBACKER - HTTP (Request)
    HIGH
    2024/04/01DDI RULE 5015/vinfo/gb/threat-encyclopedia/network/ddi-rule-5015
    DDI RULE 5014 APT - LOOKBACK - TCP (Request)
    HIGH
    2024/03/25DDI RULE 5014/vinfo/gb/threat-encyclopedia/network/ddi-rule-5014
    DDI RULE 5013 Default GUID on External IP - SMB2 (Response)
    HIGH
    2024/03/14DDI RULE 5013/vinfo/gb/threat-encyclopedia/network/ddi-rule-5013
    DDI RULE 5005 APT - LOOKBACK - TCP (Response)
    HIGH
    2024/03/11DDI RULE 5005/vinfo/gb/threat-encyclopedia/network/ddi-rule-5005
    DDI RULE 5011 CVE-2024-27198 - JetBrains TeamCity Auth Bypass Exploit - HTTP (Response)
    HIGH
    2024/03/11DDI RULE 5011/vinfo/gb/threat-encyclopedia/network/ddi-rule-5011
    DDI RULE 5012 CVE-2024-27199 - JetBrains TeamCity Directory Traversal Exploit - HTTP (Response)
    HIGH
    2024/03/11DDI RULE 5012/vinfo/gb/threat-encyclopedia/network/ddi-rule-5012
    DDI RULE 5010 NTLM Challenge from External IP Address - SMB2 (Response)
    MEDIUM
    2024/03/07DDI RULE 5010/vinfo/gb/threat-encyclopedia/network/ddi-rule-5010
    DDI RULE 4923 Splashtop Business Access Remote Desktop RMM - DNS (Response)
    LOW
    2024/03/05DDI RULE 4923/vinfo/gb/threat-encyclopedia/network/ddi-rule-4923
    DDI RULE 4999 CVE-2023-48365 - Qlik HTTP Smuggling - HTTP (Response)
    MEDIUM
    2024/02/27DDI RULE 4999/vinfo/gb/threat-encyclopedia/network/ddi-rule-4999
    DDI RULE 5001 TeamViewer RMM - UDP (Request)
    MEDIUM
    2024/02/26DDI RULE 5001/vinfo/gb/threat-encyclopedia/network/ddi-rule-5001
    DDI RULE 5002 TeamViewer RMM - DNS (Response)
    MEDIUM
    2024/02/26DDI RULE 5002/vinfo/gb/threat-encyclopedia/network/ddi-rule-5002
    DDI RULE 5008 CVE-2023-41265 - QLIK Request Tunneling Exploit - HTTP (Request)
    HIGH
    2024/02/26DDI RULE 5008/vinfo/gb/threat-encyclopedia/network/ddi-rule-5008
    DDI RULE 5009 CVE-2023-41266 - QLIK Directory Traversal Exploit - HTTP (Request)
    HIGH
    2024/02/26DDI RULE 5009/vinfo/gb/threat-encyclopedia/network/ddi-rule-5009
    DDI RULE 5006 CVE-2024-1708 - ConnectWise ScreenConnect Directory Traversal Exploit - HTTP (Request)
    HIGH
    2024/02/23DDI RULE 5006/vinfo/gb/threat-encyclopedia/network/ddi-rule-5006
    DDI RULE 5007 CVE-2024-1709 - ConnectWise ScreenConnect Authentication Bypass Exploit - HTTP (Response)
    HIGH
    2024/02/23DDI RULE 5007/vinfo/gb/threat-encyclopedia/network/ddi-rule-5007
    DDI RULE 5003 CVE-2024-22024 - Ivanti Connect Secure & Policy Secure Authentication Bypass Exploit - HTTP (Request)
    HIGH
    2024/02/22DDI RULE 5003/vinfo/gb/threat-encyclopedia/network/ddi-rule-5003
    DDI RULE 5004 SuperOps RMM Sensor - DNS (Response)
    LOW
    2024/02/22DDI RULE 5004/vinfo/gb/threat-encyclopedia/network/ddi-rule-5004
    DDI RULE 4996 CVE-2024-21893 - Ivanti Connect Secure & Policy Secure Gateways Server-Side Request Forgery Exploit - HTTP (Request)
    HIGH
    2024/02/19DDI RULE 4996/vinfo/gb/threat-encyclopedia/network/ddi-rule-4996
    DDI RULE 4998 DARKME - TCP (Request)
    HIGH
    2024/02/15DDI RULE 4998/vinfo/gb/threat-encyclopedia/network/ddi-rule-4998
    DDI RULE 5000 GhostLocker Exfiltration - HTTP (Request)
    HIGH
    2024/02/15DDI RULE 5000/vinfo/gb/threat-encyclopedia/network/ddi-rule-5000
    DDI RULE 4995 CVE-2023-46805 - Ivanti Connect Secure & Policy Secure Gateways Authentication Bypass Exploit - HTTP (Response)
    HIGH
    2024/02/12DDI RULE 4995/vinfo/gb/threat-encyclopedia/network/ddi-rule-4995
    DDI RULE 4997 CVE-2024-23897 - Jenkins Authentication Bypass Exploit - HTTP (Request)
    HIGH
    2024/02/12DDI RULE 4997/vinfo/gb/threat-encyclopedia/network/ddi-rule-4997
    DDI RULE 4994 CVE-2024-0204 - Fortra GoAnywhere MFT AuthBypass Exploit - HTTP(Request)
    HIGH
    2024/02/01DDI RULE 4994/vinfo/gb/threat-encyclopedia/network/ddi-rule-4994
    DDI RULE 4992 CVE-2023-32252 - Linux Kernel ksmbd NULL Pointer Exploit - SMB2 (Request)
    HIGH
    2024/01/31DDI RULE 4992/vinfo/gb/threat-encyclopedia/network/ddi-rule-4992
    DDI RULE 4973 Possible Encryption Downgrade Attack - Kerberos (Response)
    MEDIUM
    2024/01/31DDI RULE 4973/vinfo/gb/threat-encyclopedia/network/ddi-rule-4973
    DDI RULE 4993 MAGIC HOUND SOAP - HTTP(Request)
    HIGH
    2024/01/29DDI RULE 4993/vinfo/gb/threat-encyclopedia/network/ddi-rule-4993
    DDI RULE 4991 PIKABOT EXFIL - HTTP (Request)
    HIGH
    2024/01/29DDI RULE 4991/vinfo/gb/threat-encyclopedia/network/ddi-rule-4991
    DDI RULE 4986 CVE-2023-46604 - Possible Apache ActiveMQ RCE Exploit - HTTP (Response)
    MEDIUM
    2024/01/29DDI RULE 4986/vinfo/gb/threat-encyclopedia/network/ddi-rule-4986
    DDI RULE 4990 CVE-2023-22527 - Atlassian OGNL Injection Exploit - HTTP (Request)
    HIGH
    2024/01/25DDI RULE 4990/vinfo/gb/threat-encyclopedia/network/ddi-rule-4990
    DDI RULE 4974 HAVOC - HTTP (Request)
    HIGH
    2024/01/25DDI RULE 4974/vinfo/gb/threat-encyclopedia/network/ddi-rule-4974
    DDI RULE 4987 TPRC - HTTP (Request)
    HIGH
    2024/01/24DDI RULE 4987/vinfo/gb/threat-encyclopedia/network/ddi-rule-4987
    DDI RULE 4988 CVE-2023-46805 - Ivanti Connect Secure and Policy Secure Gateways Authentication Bypass Exploit - HTTP (Request)
    HIGH
    2024/01/24DDI RULE 4988/vinfo/gb/threat-encyclopedia/network/ddi-rule-4988
    DDI RULE 4989 CVE-2024-21887 - Ivanti Connect Secure and Policy Secure Gateways Command Injection Exploit - HTTP (Request)
    HIGH
    2024/01/24DDI RULE 4989/vinfo/gb/threat-encyclopedia/network/ddi-rule-4989
    DDI RULE 4859 ZIP TLD MOVED - HTTP(RESPONSE)
    HIGH
    2024/01/23DDI RULE 4859/vinfo/gb/threat-encyclopedia/network/ddi-rule-4859
    DDI RULE 4984 CVE-2023-44487 - HTTP2 DDOS EXPLOIT - TCP (REQUEST) - Variant 2
    HIGH
    2024/01/22DDI RULE 4984/vinfo/gb/threat-encyclopedia/network/ddi-rule-4984
    DDI RULE 4985 CVE-2023-46604 - Apache ActiveMQ RCE Exploit - TCP (Request)
    HIGH
    2024/01/22DDI RULE 4985/vinfo/gb/threat-encyclopedia/network/ddi-rule-4985
    DDI RULE 4983 Micosoft Windows SmartScreen Exploit(ZDI-CAN-23100) - HTTP(Response)
    HIGH
    2024/01/18DDI RULE 4983/vinfo/gb/threat-encyclopedia/network/ddi-rule-4983
    DDI RULE 4982 COPY FILES - SMB2(REQUEST)
    HIGH
    2024/01/16DDI RULE 4982/vinfo/gb/threat-encyclopedia/network/ddi-rule-4982
    DDI RULE 4975 CVE-2023-51467- Apache OFBiz Pre-Auth RCE Exploit - HTTP (Response)
    HIGH
    2024/01/11DDI RULE 4975/vinfo/gb/threat-encyclopedia/network/ddi-rule-4975
    DDI RULE 4976 SYSTEM INFORMATION DISCOVERY - LDAP(REQUEST)
    MEDIUM
    2024/01/11DDI RULE 4976/vinfo/gb/threat-encyclopedia/network/ddi-rule-4976
    DDI RULE 4977 TRUSTED DOMAIN DISCOVERY - LDAP(REQUEST)
    MEDIUM
    2024/01/11DDI RULE 4977/vinfo/gb/threat-encyclopedia/network/ddi-rule-4977
    DDI RULE 4978 PASSWORD POLICY DISCOVERY - LDAP(REQUEST)
    MEDIUM
    2024/01/11DDI RULE 4978/vinfo/gb/threat-encyclopedia/network/ddi-rule-4978
    DDI RULE 4979 PERMISSION GROUP DISCOVERY - LDAP(REQUEST)
    MEDIUM
    2024/01/11DDI RULE 4979/vinfo/gb/threat-encyclopedia/network/ddi-rule-4979
    DDI RULE 4980 SYSTEM OWNER DISCOVERY - LDAP(REQUEST)
    MEDIUM
    2024/01/11DDI RULE 4980/vinfo/gb/threat-encyclopedia/network/ddi-rule-4980
    DDI RULE 4981 ACCOUNT DISCOVERY - LDAP(REQUEST)
    MEDIUM
    2024/01/11DDI RULE 4981/vinfo/gb/threat-encyclopedia/network/ddi-rule-4981
    DDI RULE 4972 PIKABOT DLL Dropper - HTTP (Request)
    MEDIUM
    2024/01/10DDI RULE 4972/vinfo/gb/threat-encyclopedia/network/ddi-rule-4972
    DDI RULE 4968 Remcos - TCP
    MEDIUM
    2024/01/03DDI RULE 4968/vinfo/gb/threat-encyclopedia/network/ddi-rule-4968
    DDI RULE 4969 Fonelab - Certificate - HTTPS
    MEDIUM
    2024/01/03DDI RULE 4969/vinfo/gb/threat-encyclopedia/network/ddi-rule-4969
    DDI RULE 4970 CVE-2021-20016 - SonicWall SSLVPN SMA100 SQL Injection Exploit - HTTP (Request)
    HIGH
    2024/01/03DDI RULE 4970/vinfo/gb/threat-encyclopedia/network/ddi-rule-4970
    DDI RULE 4971 APT CONN - UDP(REQUEST)
    HIGH
    2024/01/02DDI RULE 4971/vinfo/gb/threat-encyclopedia/network/ddi-rule-4971
    DDI RULE 4928 CVE-2023-2914 - Rockwell Automation ThinManager ThinServer Type 13 Synchronization Integer Overflow Exploit - TCP (Request)
    HIGH
    2023/12/21DDI RULE 4928/vinfo/gb/threat-encyclopedia/network/ddi-rule-4928
    DDI RULE 4967 CVE-2023-50164 - Apace Struts2 Path Traversal Exploit - HTTP (Request)
    HIGH
    2023/12/19DDI RULE 4967/vinfo/gb/threat-encyclopedia/network/ddi-rule-4967
    DDI RULE 4965 LVRAN - HTTP (Request)
    HIGH
    2023/12/18DDI RULE 4965/vinfo/gb/threat-encyclopedia/network/ddi-rule-4965
    DDI RULE 4966 BIGIP TMSH Path Exploit - HTTP (Response)
    MEDIUM
    2023/12/14DDI RULE 4966/vinfo/gb/threat-encyclopedia/network/ddi-rule-4966
    DDI RULE 4962 BRUTEFORCE - SMB(RESPONSE)
    HIGH
    2023/12/12DDI RULE 4962/vinfo/gb/threat-encyclopedia/network/ddi-rule-4962
    DDI RULE 4949 CVE-2023-46747 - BIGIP Smug Exploit - HTTP (Request)
    HIGH
    2023/12/12DDI RULE 4949/vinfo/gb/threat-encyclopedia/network/ddi-rule-4949
    DDI RULE 4964 CVE-2023-49070 - Apache OFBiz Pre-Auth RCE Exploit - HTTP (Request)
    HIGH
    2023/12/12DDI RULE 4964/vinfo/gb/threat-encyclopedia/network/ddi-rule-4964
    DDI RULE 4963 CVE-2023-44487 - HTTP2 DDOS EXPLOIT - TCP(REQUEST)
    HIGH
    2023/12/11DDI RULE 4963/vinfo/gb/threat-encyclopedia/network/ddi-rule-4963
    DDI RULE 4958 POSSIBLE TUNNELING - DNS (Response) - Variant 2
    LOW
    2023/12/05DDI RULE 4958/vinfo/gb/threat-encyclopedia/network/ddi-rule-4958
    DDI RULE 4959 COBEACON C2 - HTTP(RESPONSE)
    MEDIUM
    2023/12/05DDI RULE 4959/vinfo/gb/threat-encyclopedia/network/ddi-rule-4959
    DDI RULE 4961 TRAMPIKABOT - HTTP(REQUEST)
    HIGH
    2023/12/05DDI RULE 4961/vinfo/gb/threat-encyclopedia/network/ddi-rule-4961
    DDI RULE 4960 CVE-2023-46604 - Possible Apache ActiveMQ RCE Exploit - HTTP (Request)
    MEDIUM
    2023/11/30DDI RULE 4960/vinfo/gb/threat-encyclopedia/network/ddi-rule-4960
    DDI RULE 4930 RHYSIDA - SMB2 (Request)
    HIGH
    2023/11/30DDI RULE 4930/vinfo/gb/threat-encyclopedia/network/ddi-rule-4930
    DDI RULE 4956 CVE-2023-47246 - SYSAID TRAVERSAL EXPLOIT - HTTP (Request)
    HIGH
    2023/11/22DDI RULE 4956/vinfo/gb/threat-encyclopedia/network/ddi-rule-4956
    DDI RULE 4957 CVE-2023-4634 - Wordpress Plugin Media-Library-Assistant RCE Exploit - HTTP (Request)
    HIGH
    2023/11/22DDI RULE 4957/vinfo/gb/threat-encyclopedia/network/ddi-rule-4957
    DDI RULE 4894 CVE-2023-28771 - Zyxel RCE Exploit - UDP (Request)
    HIGH
    2023/11/21DDI RULE 4894/vinfo/gb/threat-encyclopedia/network/ddi-rule-4894
    DDI RULE 4879 Possible CVE-2021-27876 - Veritas RCE Exploit - TCP (Response)
    LOW
    2023/11/21DDI RULE 4879/vinfo/gb/threat-encyclopedia/network/ddi-rule-4879
    DDI RULE 4954 CVE-2022-42475 - Fortinet FortiOS SSL-VPN Buffer Overflow Exploit - HTTP (Request)
    HIGH
    2023/11/20DDI RULE 4954/vinfo/gb/threat-encyclopedia/network/ddi-rule-4954
    DDI RULE 4955 PIKABOT - Malicious Certificate - HTTPS
    HIGH
    2023/11/20DDI RULE 4955/vinfo/gb/threat-encyclopedia/network/ddi-rule-4955
    DDI RULE 4952 APT CONN - TCP(REQUEST)
    HIGH
    2023/11/20DDI RULE 4952/vinfo/gb/threat-encyclopedia/network/ddi-rule-4952
    DDI RULE 4953 CVE-2023-20198 - Cisco IOS XE WebUI Authentication Bypass Exploit - HTTP (Request)
    HIGH
    2023/11/16DDI RULE 4953/vinfo/gb/threat-encyclopedia/network/ddi-rule-4953
    DDI RULE 4935 ANOMALIES - HTTP(REQUEST)
    MEDIUM
    2023/11/16DDI RULE 4935/vinfo/gb/threat-encyclopedia/network/ddi-rule-4935
    DDI RULE 4942 CVE-2023-4966 - NetScaler ADC and Gateway Buffer Overflow Exploit - HTTP (Request)
    HIGH
    2023/11/16DDI RULE 4942/vinfo/gb/threat-encyclopedia/network/ddi-rule-4942
    DDI RULE 4944 CVE-2023-28288 - MS Sharepoint Information Disclosure Exploit - HTTP(Request)
    HIGH
    2023/11/16DDI RULE 4944/vinfo/gb/threat-encyclopedia/network/ddi-rule-4944
    DDI RULE 4947 GOOTLOADER XMLRPC - HTTP (Request)
    HIGH
    2023/11/16DDI RULE 4947/vinfo/gb/threat-encyclopedia/network/ddi-rule-4947
    DDI RULE 4946 SQL Injection Exploit Sensor - HTTP (Request)
    MEDIUM
    2023/11/14DDI RULE 4946/vinfo/gb/threat-encyclopedia/network/ddi-rule-4946
    DDI RULE 4936 CVE-2023-29516 - XWIKI RCE Exploit - HTTP (Request)
    HIGH
    2023/11/14DDI RULE 4936/vinfo/gb/threat-encyclopedia/network/ddi-rule-4936
    DDI RULE 4937 CVE-2023-37462 - XWIKI RCE Exploit - HTTP (Request)
    HIGH
    2023/11/14DDI RULE 4937/vinfo/gb/threat-encyclopedia/network/ddi-rule-4937
    DDI RULE 4913 CVE-2023-40044 - WS FTP RCE Exploit - HTTP (Request)
    HIGH
    2023/11/14DDI RULE 4913/vinfo/gb/threat-encyclopedia/network/ddi-rule-4913
    DDI RULE 4951 TURLA - HTTP(REQUEST)
    HIGH
    2023/11/14DDI RULE 4951/vinfo/gb/threat-encyclopedia/network/ddi-rule-4951
    DDI RULE 4950 CVE-2023-20273 - Cisco IOS XE WebUI RCE Exploit - HTTP (Request)
    HIGH
    2023/11/13DDI RULE 4950/vinfo/gb/threat-encyclopedia/network/ddi-rule-4950
    DDI RULE 4931 Cisco IOS XE Vulnerability Implant Detection Exploit - HTTP (Response)
    HIGH
    2023/11/13DDI RULE 4931/vinfo/gb/threat-encyclopedia/network/ddi-rule-4931
    DDI RULE 4948 CVE-2023-36745 - MS Exchange Powershell RCE EXPLOIT - HTTP (Request)
    HIGH
    2023/11/13DDI RULE 4948/vinfo/gb/threat-encyclopedia/network/ddi-rule-4948
    DDI RULE 4941 CVE-2023-22518 - Confluence Improper Authorization Vulnerability Exploit - HTTP (Request)
    HIGH
    2023/11/10DDI RULE 4941/vinfo/gb/threat-encyclopedia/network/ddi-rule-4941
    DDI RULE 4945 Confluence Improper Authorization Vulnerability Exploit Sensor - HTTP (Response)
    MEDIUM
    2023/11/10DDI RULE 4945/vinfo/gb/threat-encyclopedia/network/ddi-rule-4945
    DDI RULE 4943 CVE-2023-38545 - Libcurl Exploit - HTTP(Response)
    HIGH
    2023/11/10DDI RULE 4943/vinfo/gb/threat-encyclopedia/network/ddi-rule-4943
    DDI RULE 4940 APT URL - HTTP(REQUEST)
    HIGH
    2023/11/09DDI RULE 4940/vinfo/gb/threat-encyclopedia/network/ddi-rule-4940
    DDI RULE 4938 APT DOMAINS - DNS(RESPONSE)
    HIGH
    2023/11/08DDI RULE 4938/vinfo/gb/threat-encyclopedia/network/ddi-rule-4938
    DDI RULE 4904 PRIVATE LOADER STATUS - HTTP (Request)
    HIGH
    2023/11/08DDI RULE 4904/vinfo/gb/threat-encyclopedia/network/ddi-rule-4904
    DDI RULE 4932 CVE-2023-44414 - DLINK RCE EXPLOIT - HTTP(REQUEST)
    HIGH
    2023/10/31DDI RULE 4932/vinfo/gb/threat-encyclopedia/network/ddi-rule-4932
    DDI RULE 4933 CVE-2023-42117 - Exim RCE EXPLOIT - SMTP(Request)
    HIGH
    2023/10/26DDI RULE 4933/vinfo/gb/threat-encyclopedia/network/ddi-rule-4933
    DDI RULE 4934 CVE-2023-22515 - Atlassian Confluence Data Center Broken Access Control Exploit - HTTP (Request)
    HIGH
    2023/10/26DDI RULE 4934/vinfo/gb/threat-encyclopedia/network/ddi-rule-4934
    DDI RULE 4922 CVE-2023-38831 - WINRAR POE EXPLOIT - HTTP (Response)
    HIGH
    2023/10/25DDI RULE 4922/vinfo/gb/threat-encyclopedia/network/ddi-rule-4922
    DDI RULE 4929 CVE-2023-2917 - Rockwell Automation ThinManager ThinServer Type 38 Synchronization Message Directory Traversal Exploit - TCP (Request)
    HIGH
    2023/10/25DDI RULE 4929/vinfo/gb/threat-encyclopedia/network/ddi-rule-4929
    DDI RULE 4814 CVE-2022-41080 - MS Exchange Server Outlook Web Access Exploit - HTTP(Request)
    LOW
    2023/10/25DDI RULE 4814/vinfo/gb/threat-encyclopedia/network/ddi-rule-4814
    DDI RULE 4927 CVE-2023-0210 - Linux Kernel ksmbd Integer Underflow Exploit - SMB2 (Request)
    HIGH
    2023/10/24DDI RULE 4927/vinfo/gb/threat-encyclopedia/network/ddi-rule-4927
    DDI RULE 4918 CVE-2023-29525 - XWiki LegacyNotificationAdministration Code Injection Exploit - HTTP (Request)
    HIGH
    2023/10/24DDI RULE 4918/vinfo/gb/threat-encyclopedia/network/ddi-rule-4918
    DDI RULE 4916 CVE-2022-27255 - SIP BUFFEROVERFLOW EXPLOIT - ICMP(REQUEST)
    HIGH
    2023/10/23DDI RULE 4916/vinfo/gb/threat-encyclopedia/network/ddi-rule-4916
    DDI RULE 4926 CVE-2023-39361 - Cacti Group Cacti graph_view.php SQL Injection Exploit - HTTP (Request)
    HIGH
    2023/10/23DDI RULE 4926/vinfo/gb/threat-encyclopedia/network/ddi-rule-4926
    DDI RULE 4924 Linux Kernel ksmbd NULL Pointer Exploit - SMB2(Request)
    HIGH
    2023/10/23DDI RULE 4924/vinfo/gb/threat-encyclopedia/network/ddi-rule-4924
    DDI RULE 4925 LUMMAC2SOCK - HTTP (Request)
    HIGH
    2023/10/19DDI RULE 4925/vinfo/gb/threat-encyclopedia/network/ddi-rule-4925
    DDI RULE 4920 LUMMAC2CONF - HTTP (Request)
    HIGH
    2023/10/19DDI RULE 4920/vinfo/gb/threat-encyclopedia/network/ddi-rule-4920
    DDI RULE 4921 DARKGATE - HTTP (Request)
    HIGH
    2023/10/19DDI RULE 4921/vinfo/gb/threat-encyclopedia/network/ddi-rule-4921
    DDI RULE 4919 CVE-2023-24488 - Citrix Gateway Open Redirect and XSS Exploit - HTTP (Request)
    HIGH
    2023/10/18DDI RULE 4919/vinfo/gb/threat-encyclopedia/network/ddi-rule-4919
    DDI RULE 4914 CVE-2023-35166 - XWiKi RCE Exploit - HTTP (Request)
    HIGH
    2023/10/17DDI RULE 4914/vinfo/gb/threat-encyclopedia/network/ddi-rule-4914
    DDI RULE 4911 CVE-2023-32563 - Ivanti Avalanche Directory Traversal Exploit - HTTP(Request)
    HIGH
    2023/10/17DDI RULE 4911/vinfo/gb/threat-encyclopedia/network/ddi-rule-4911
    DDI RULE 4912 Possible Overpass-The-Hash Technique - Kerberos (Request)
    HIGH
    2023/10/17DDI RULE 4912/vinfo/gb/threat-encyclopedia/network/ddi-rule-4912
    DDI RULE 4915 CVE-2023-42121 - CONTROLWEBPANEL RCE EXPLOIT - HTTP(REQUEST)
    HIGH
    2023/10/11DDI RULE 4915/vinfo/gb/threat-encyclopedia/network/ddi-rule-4915
    DDI RULE 4909 BUMBLELOADER Exfil - HTTP (Response)
    HIGH
    2023/10/10DDI RULE 4909/vinfo/gb/threat-encyclopedia/network/ddi-rule-4909
    DDI RULE 4910 CVE-2023-20890 - VMware Aria Operations Directory Traversal Exploit - HTTP (Request)
    HIGH
    2023/10/09DDI RULE 4910/vinfo/gb/threat-encyclopedia/network/ddi-rule-4910
    DDI RULE 4908 BUMBLE LOADER FALCON - DNS (Request)
    MEDIUM
    2023/10/05DDI RULE 4908/vinfo/gb/threat-encyclopedia/network/ddi-rule-4908
    DDI RULE 4906 CVE-2023-38126 - Softing edgeAggregator Restore Configuration Directory Traversal Exploit - HTTPS (Request)
    HIGH
    2023/10/04DDI RULE 4906/vinfo/gb/threat-encyclopedia/network/ddi-rule-4906
    DDI RULE 4907 CVE-2023-39750 - D-Link DAP-2660 Buffer Overflow Exploit - HTTP (Request)
    HIGH
    2023/10/04DDI RULE 4907/vinfo/gb/threat-encyclopedia/network/ddi-rule-4907
    DDI RULE 4905 CVE-2023-4711 - DLink RCE Exploit - HTTP (Request)
    HIGH
    2023/10/02DDI RULE 4905/vinfo/gb/threat-encyclopedia/network/ddi-rule-4905
    DDI RULE 4901 CVE-2023-28651 - Contec CONPROSYS HMI System XSS Exploit - HTTP (Request)
    HIGH
    2023/10/02DDI RULE 4901/vinfo/gb/threat-encyclopedia/network/ddi-rule-4901
    DDI RULE 4903 CVE-2023-36932 - MOVEit Transfer FolderListRecursive SQL Injection Exploit - HTTPS (Request)
    HIGH
    2023/10/02DDI RULE 4903/vinfo/gb/threat-encyclopedia/network/ddi-rule-4903
    DDI RULE 4900 CVE-2023-32165 - D-Link D-View Directory Traversal Exploit - TFTP (Request)
    HIGH
    2023/09/28DDI RULE 4900/vinfo/gb/threat-encyclopedia/network/ddi-rule-4900
    DDI RULE 4898 A normal user attempted to log on to the POSTGRES service
    LOW
    2023/09/28DDI RULE 4898/vinfo/gb/threat-encyclopedia/network/ddi-rule-4898
    DDI RULE 4899 CVE-2023-38204 - Adobe ColdFusion RCE Exploit - HTTP (Request)
    HIGH
    2023/09/28DDI RULE 4899/vinfo/gb/threat-encyclopedia/network/ddi-rule-4899
    DDI RULE 4902 QAKBOT - HTTP (REQUEST) - Variant 9
    HIGH
    2023/09/26DDI RULE 4902/vinfo/gb/threat-encyclopedia/network/ddi-rule-4902
    DDI RULE 4893 CVE-2023-20887 - VREALIZE SHELL INJECT EXPLOIT - HTTP (Request)
    HIGH
    2023/09/25DDI RULE 4893/vinfo/gb/threat-encyclopedia/network/ddi-rule-4893
    DDI RULE 4897 CVE-2023-34127 - SonicWall Command Injection Exploit - HTTP (Request)
    HIGH
    2023/09/25DDI RULE 4897/vinfo/gb/threat-encyclopedia/network/ddi-rule-4897
    DDI RULE 4889 COBEACON - Malicious Certificate - HTTPS
    HIGH
    2023/09/25DDI RULE 4889/vinfo/gb/threat-encyclopedia/network/ddi-rule-4889
    DDI RULE 4895 NDMP FILEWRITE - TCP(REQUEST)
    LOW
    2023/09/21DDI RULE 4895/vinfo/gb/threat-encyclopedia/network/ddi-rule-4895
    DDI RULE 4896 NDMP EXECUTE COMMAND - TCP(REQUEST)
    LOW
    2023/09/21DDI RULE 4896/vinfo/gb/threat-encyclopedia/network/ddi-rule-4896
    DDI RULE 4892 APT - COBEACON ENC - HTTP (Request)
    LOW
    2023/09/21DDI RULE 4892/vinfo/gb/threat-encyclopedia/network/ddi-rule-4892
    DDI RULE 4890 Msgbot Exfilt - HTTP (Request)
    MEDIUM
    2023/09/20DDI RULE 4890/vinfo/gb/threat-encyclopedia/network/ddi-rule-4890
    DDI RULE 4891 CVE-2023-32071 - XWIKI XSS RCE Exploit- HTTP (Request)
    HIGH
    2023/09/20DDI RULE 4891/vinfo/gb/threat-encyclopedia/network/ddi-rule-4891
    DDI RULE 4881 CVE-2023-34133 - SonicWall SQL Injection Exploit - HTTP (Request)
    HIGH
    2023/09/18DDI RULE 4881/vinfo/gb/threat-encyclopedia/network/ddi-rule-4881
    DDI RULE 4882 CVE-2023-38099 - NetGear SQL Injection Exploit - HTTP (Request)
    HIGH
    2023/09/14DDI RULE 4882/vinfo/gb/threat-encyclopedia/network/ddi-rule-4882
    DDI RULE 4885 CVE-2023-25717 - Ruckus RCE Exploit - HTTP (Request)
    HIGH
    2023/09/14DDI RULE 4885/vinfo/gb/threat-encyclopedia/network/ddi-rule-4885
    DDI RULE 4888 CVE-2023-38148 - DHCP BUFFER OVERFLOW EXPLOIT - UDP(REQUEST)
    HIGH
    2023/09/13DDI RULE 4888/vinfo/gb/threat-encyclopedia/network/ddi-rule-4888
    DDI RULE 4883 CVE-2023-24489 - Citrix ShareFile Directory Traversal Exploit - HTTP (Request)
    HIGH
    2023/09/13DDI RULE 4883/vinfo/gb/threat-encyclopedia/network/ddi-rule-4883
    DDI RULE 4884 CVE-2023-32560 - Ivanti Avalanche WLAvalancheService Stack Buffer Overflow RCE Exploit - TCP (Request)
    HIGH
    2023/09/13DDI RULE 4884/vinfo/gb/threat-encyclopedia/network/ddi-rule-4884
    DDI RULE 4880 CVE-2023-3519 - CITRIX OVERFLOW EXPLOIT - HTTP (Request)
    HIGH
    2023/09/12DDI RULE 4880/vinfo/gb/threat-encyclopedia/network/ddi-rule-4880
    DDI RULE 4877 CVE-2023-33246 - Apache RocketMQ RCE Exploit - TCP (Request)
    HIGH
    2023/09/07DDI RULE 4877/vinfo/gb/threat-encyclopedia/network/ddi-rule-4877
    DDI RULE 4878 CVE-2023-35150 - XWIKI RCE Exploit - HTTP (Request)
    HIGH
    2023/09/07DDI RULE 4878/vinfo/gb/threat-encyclopedia/network/ddi-rule-4878
    DDI RULE 4874 TOOL BITSADMIN POST - HTTP(REQUEST)
    LOW
    2023/09/04DDI RULE 4874/vinfo/gb/threat-encyclopedia/network/ddi-rule-4874
    DDI RULE 4876 CVE-2023-35078 - Ivanti Endpoint - HTTP (Response)
    HIGH
    2023/08/31DDI RULE 4876/vinfo/gb/threat-encyclopedia/network/ddi-rule-4876
    DDI RULE 4875 CVE-2023-39475 - Ingnition Deserialization Remote Code Execution Exploit - HTTP(Request)
    HIGH
    2023/08/30DDI RULE 4875/vinfo/gb/threat-encyclopedia/network/ddi-rule-4875
    DDI RULE 4794 CVE-2022-3602 - OpenSSL Buffer Overflow Exploit - TLS (Response)
    HIGH
    2023/08/23DDI RULE 4794/vinfo/gb/threat-encyclopedia/network/ddi-rule-4794
    DDI RULE 4873 APT - PUBLOAD - HTTP (Request)
    HIGH
    2023/08/15DDI RULE 4873/vinfo/gb/threat-encyclopedia/network/ddi-rule-4873
    DDI RULE 4872 ICEDID JAVASCRIPT DROPPER - HTTP(Request)
    HIGH
    2023/08/09DDI RULE 4872/vinfo/gb/threat-encyclopedia/network/ddi-rule-4872
    DDI RULE 4870 COBEACON DEFAULT NAMED PIPE - SMB2 (Request)
    LOW
    2023/08/08DDI RULE 4870/vinfo/gb/threat-encyclopedia/network/ddi-rule-4870
    DDI RULE 4871 CVE-2021-27860 - VOLTTYPHOON EXPLOIT - HTTP(Request)
    HIGH
    2023/08/07DDI RULE 4871/vinfo/gb/threat-encyclopedia/network/ddi-rule-4871
    DDI RULE 4804 CVE-2022-4223 - PGADMIN RCE EXPLOIT - HTTP(REQUEST)
    HIGH
    2023/08/03DDI RULE 4804/vinfo/gb/threat-encyclopedia/network/ddi-rule-4804
    DDI RULE 2466 Accessed non-existing administrative share - SMB
    LOW
    2023/07/31DDI RULE 2466/vinfo/gb/threat-encyclopedia/network/ddi-rule-2466
    DDI RULE 4869 CVE-2023-29357 - SHAREPOINT PRIVILEGE ESCALATION - HTTP (REQUEST) - Variant 2
    HIGH
    2023/07/25DDI RULE 4869/vinfo/gb/threat-encyclopedia/network/ddi-rule-4869
    DDI RULE 4868 CVE-2023-33157 - SHAREPOINT RCE EXPLOIT - HTTP(REQUEST)
    HIGH
    2023/07/17DDI RULE 4868/vinfo/gb/threat-encyclopedia/network/ddi-rule-4868
    DDI RULE 4860 COBEACON - DNS (Response) - Variant 2
    MEDIUM
    2023/07/13DDI RULE 4860/vinfo/gb/threat-encyclopedia/network/ddi-rule-4860
    DDI RULE 4867 CVE-2023-36934 - MOVEIT SQL INJECTION EXPLOIT - HTTP(REQUEST)
    HIGH
    2023/07/06DDI RULE 4867/vinfo/gb/threat-encyclopedia/network/ddi-rule-4867
    DDI RULE 4866 CVE-2023-29357 - SHAREPOINT PRIVILEGE ESCALATION - HTTP(REQUEST)
    HIGH
    2023/07/04DDI RULE 4866/vinfo/gb/threat-encyclopedia/network/ddi-rule-4866
    DDI RULE 4863 CVE-2023-25690 - APACHE HTTP Server Request Smuggling Exploit - HTTP (Request)
    MEDIUM
    2023/07/04DDI RULE 4863/vinfo/gb/threat-encyclopedia/network/ddi-rule-4863
    DDI RULE 4865 CVE-2023-35708 - MOVEIT SQL INJECTION EXPLOIT - HTTP(REQUEST)
    HIGH
    2023/06/22DDI RULE 4865/vinfo/gb/threat-encyclopedia/network/ddi-rule-4865
    DDI RULE 4864 CVE-2023-35036 - MOVEIT CERT SQL INJECTION - HTTP(REQUEST)
    HIGH
    2023/06/21DDI RULE 4864/vinfo/gb/threat-encyclopedia/network/ddi-rule-4864
    DDI RULE 4862 CVE-2023-27997 - Fortinet FortiGate Buffer Overflow Exploit- HTTP (Request)
    HIGH
    2023/06/21DDI RULE 4862/vinfo/gb/threat-encyclopedia/network/ddi-rule-4862
    DDI RULE 4858 SLIVER - HTTP (Request)
    MEDIUM
    2023/06/14DDI RULE 4858/vinfo/gb/threat-encyclopedia/network/ddi-rule-4858
    DDI RULE 4856 CVE-2023-34362 - MOVEIT SQL INJECTION EXPLOIT - HTTP(REQUEST)
    HIGH
    2023/06/08DDI RULE 4856/vinfo/gb/threat-encyclopedia/network/ddi-rule-4856
    DDI RULE 4854 SILOCK WEBSHELL - HTTP(REQUEST)
    HIGH
    2023/06/05DDI RULE 4854/vinfo/gb/threat-encyclopedia/network/ddi-rule-4854
    DDI RULE 4855 REDLINE EXFIL - TCP(REQUEST)
    HIGH
    2023/06/05DDI RULE 4855/vinfo/gb/threat-encyclopedia/network/ddi-rule-4855
    DDI RULE 4851 CVE-2022-27924 - ZIMBRA EXPLOIT - HTTP (Request)
    HIGH
    2023/06/05DDI RULE 4851/vinfo/gb/threat-encyclopedia/network/ddi-rule-4851
    DDI RULE 4853 ICEDID EXFIL - HTTP(REQUEST)
    HIGH
    2023/06/01DDI RULE 4853/vinfo/gb/threat-encyclopedia/network/ddi-rule-4853
    DDI RULE 4852 CVE-2023-21554 - WINDOWS MQ SERVICE RCE - TCP(REQUEST)
    HIGH
    2023/05/31DDI RULE 4852/vinfo/gb/threat-encyclopedia/network/ddi-rule-4852
    DDI RULE 4850 PsExec - SMB2 (Request)
    MEDIUM
    2023/05/27DDI RULE 4850/vinfo/gb/threat-encyclopedia/network/ddi-rule-4850
    DDI RULE 4849 CVE-2023-1671 - Sophos Web Appliance Command Injection Exploit - HTTP (Request)
    HIGH
    2023/05/25DDI RULE 4849/vinfo/gb/threat-encyclopedia/network/ddi-rule-4849
    DDI RULE 4847 CVE-2022-36067 - VM2 REMOTE CODE EXECUTION - HTTP(REQUEST)
    HIGH
    2023/05/22DDI RULE 4847/vinfo/gb/threat-encyclopedia/network/ddi-rule-4847
    DDI RULE 4848 LOCKBIT EXFIL - HTTP(REQUEST)
    HIGH
    2023/05/22DDI RULE 4848/vinfo/gb/threat-encyclopedia/network/ddi-rule-4848
    DDI RULE 4843 CVE-2023-32521 - TMMS UNAUTHENTICATED TRAVERSAL EXPLOIT - HTTP (Request)
    HIGH
    2023/05/18DDI RULE 4843/vinfo/gb/threat-encyclopedia/network/ddi-rule-4843
    DDI RULE 4844 CVE-2023-32522 - TMMS AUTHENTICATED TRAVERSAL EXPLOIT - HTTP (Request)
    HIGH
    2023/05/18DDI RULE 4844/vinfo/gb/threat-encyclopedia/network/ddi-rule-4844
    DDI RULE 4845 TMMS FILE DISCLOSURE EXPLOIT - HTTP (Request)
    HIGH
    2023/05/18DDI RULE 4845/vinfo/gb/threat-encyclopedia/network/ddi-rule-4845
    DDI RULE 4839 CVE-2023-1389 - TPLink Firmware Command Injection Exploit - HTTP (Request)
    MEDIUM
    2023/05/17DDI RULE 4839/vinfo/gb/threat-encyclopedia/network/ddi-rule-4839
    DDI RULE 4819 Possible Traffic Signaling - TCP (Request)
    HIGH
    2023/05/17DDI RULE 4819/vinfo/gb/threat-encyclopedia/network/ddi-rule-4819
    DDI RULE 4820 Traffic with Base64 Encode - TCP (Request)
    HIGH
    2023/05/17DDI RULE 4820/vinfo/gb/threat-encyclopedia/network/ddi-rule-4820
    DDI RULE 4846 CVE-2023-24941 - WINDOWS NETWORK FILE SYSTEM RCE EXPLOIT - TCP(REQUEST)
    HIGH
    2023/05/15DDI RULE 4846/vinfo/gb/threat-encyclopedia/network/ddi-rule-4846
    DDI RULE 4821 Authentication Required - HTTP (Response)
    LOW
    2023/05/10DDI RULE 4821/vinfo/gb/threat-encyclopedia/network/ddi-rule-4821
    DDI RULE 4842 CVE-2023-24950 - MICROSOFT SHAREPOINT RCE EXPLOIT - HTTP(REQUEST)
    HIGH
    2023/05/08DDI RULE 4842/vinfo/gb/threat-encyclopedia/network/ddi-rule-4842
    DDI RULE 4840 CVE-2023-28231 - BUFFER OVERFLOW - MICROSOFT DHCPv6(REQUEST)
    HIGH
    2023/05/04DDI RULE 4840/vinfo/gb/threat-encyclopedia/network/ddi-rule-4840
    DDI RULE 4841 CVE-2022-43945 - Network File System RPC RCE EXPLOIT - TCP (Request)
    HIGH
    2023/05/04DDI RULE 4841/vinfo/gb/threat-encyclopedia/network/ddi-rule-4841
    DDI RULE 4830 CVE-2023-0669 - FORTRA GOANYWHERE MFT RCE REQUEST - HTTP (Exploit)
    HIGH
    2023/05/03DDI RULE 4830/vinfo/gb/threat-encyclopedia/network/ddi-rule-4830
    DDI RULE 4838 POWERSHELL SERIALIZATION RCE EXPLOIT - HTTP(REQUEST)
    HIGH
    2023/04/27DDI RULE 4838/vinfo/gb/threat-encyclopedia/network/ddi-rule-4838
    DDI RULE 4835 CVE-2023-27350 - PaperCut MF/NG Authentication Bypass Exploit - HTTP (REQUEST)
    LOW
    2023/04/26DDI RULE 4835/vinfo/gb/threat-encyclopedia/network/ddi-rule-4835
    DDI RULE 4836 CVE-2023-27351 - PaperCut MF/NG Authentication Bypass Exploit - HTTP (REQUEST)
    LOW
    2023/04/26DDI RULE 4836/vinfo/gb/threat-encyclopedia/network/ddi-rule-4836
    DDI RULE 4837 CVE-2022-31814 - NETGATE RCE EXPLOIT - HTTP (Request)
    HIGH
    2023/04/26DDI RULE 4837/vinfo/gb/threat-encyclopedia/network/ddi-rule-4837
    DDI RULE 4832 CVE-2022-31706 - VMWARE RCE RESPONSE - HTTP (Exploit)
    HIGH
    2023/04/18DDI RULE 4832/vinfo/gb/threat-encyclopedia/network/ddi-rule-4832
    DDI RULE 4576 CVE-2021-31166 - HTTP Protocol RCE Exploit - HTTP (REQUEST)
    HIGH
    2023/04/17DDI RULE 4576/vinfo/gb/threat-encyclopedia/network/ddi-rule-4576
    DDI RULE 4828 ICONICSTEALER - TCP(RESPONSE)
    HIGH
    2023/04/12DDI RULE 4828/vinfo/gb/threat-encyclopedia/network/ddi-rule-4828
    DDI RULE 4831 CVE-2022-37958 - MS WINDOWS NEGOEX REQUEST - SMB2 (Exploit)
    HIGH
    2023/04/05DDI RULE 4831/vinfo/gb/threat-encyclopedia/network/ddi-rule-4831
    DDI RULE 4825 CVE-2021-42756 - FORTIWEB BUFFER OVERFLOW - HTTP(REQUEST)
    HIGH
    2023/04/04DDI RULE 4825/vinfo/gb/threat-encyclopedia/network/ddi-rule-4825
    DDI RULE 4826 FREBNIIS - HTTP (Request)
    HIGH
    2023/03/30DDI RULE 4826/vinfo/gb/threat-encyclopedia/network/ddi-rule-4826
    DDI RULE 4824 SOCGHOULISH - HTTP (Request)
    HIGH
    2023/03/29DDI RULE 4824/vinfo/gb/threat-encyclopedia/network/ddi-rule-4824
    DDI RULE 4822 CVE-2022-39952 - Fortinet FortiNAC RCE Exploit - HTTP (Request)
    HIGH
    2023/03/28DDI RULE 4822/vinfo/gb/threat-encyclopedia/network/ddi-rule-4822
    DDI RULE 4823 POSSIBLE CVE-2023-23415 - REMOTE CODE EXECUTION - ICMP(REQUEST)
    HIGH
    2023/03/27DDI RULE 4823/vinfo/gb/threat-encyclopedia/network/ddi-rule-4823
    DDI RULE 4818 CVE-2022-36804 - Atlassian Bitbucket Command Injection Exploit - HTTP(REQUEST)
    HIGH
    2023/03/15DDI RULE 4818/vinfo/gb/threat-encyclopedia/network/ddi-rule-4818
    DDI RULE 4532 CVE-2021-26855 - Exchange Server Side Request Forgery Exploit - HTTP (REQUEST) - Variant 2
    HIGH
    2023/03/14DDI RULE 4532/vinfo/gb/threat-encyclopedia/network/ddi-rule-4532
    DDI RULE 4817 WINEXE DETECTED - SMB2(REQUEST)
    HIGH
    2023/03/13DDI RULE 4817/vinfo/gb/threat-encyclopedia/network/ddi-rule-4817
    DDI RULE 4816 WINEXE DETECTED - SMB(REQUEST)
    HIGH
    2023/03/09DDI RULE 4816/vinfo/gb/threat-encyclopedia/network/ddi-rule-4816
    DDI RULE 4815 CVE-2022-41082 - MS EXCHANGE POWERSHELL RCE EXPLOIT - HTTP(REQUEST)
    HIGH
    2023/03/07DDI RULE 4815/vinfo/gb/threat-encyclopedia/network/ddi-rule-4815
    DDI RULE 4812 CVE-2022-1040 - SOPHOS FIREWALL USER PORTAL AND WEBADMIN REMOTE CODE EXECUTION - HTTP(EXPLOIT)
    HIGH
    2023/02/16DDI RULE 4812/vinfo/gb/threat-encyclopedia/network/ddi-rule-4812
    DDI RULE 4811 CVE-2021-21974 - VMWARE OPENSLP RCE EXPLOIT - TCP(REQUEST)
    HIGH
    2023/02/14DDI RULE 4811/vinfo/gb/threat-encyclopedia/network/ddi-rule-4811
    DDI RULE 4809 CVE-2022-31698 - VMWARE DDOS EXPLOIT - HTTP(REQUEST)
    HIGH
    2023/02/13DDI RULE 4809/vinfo/gb/threat-encyclopedia/network/ddi-rule-4809
    DDI RULE 4806 CVE-2022-44877 - CENTOS WEB PANEL COMMAND INJECTION - HTTP(EXPLOIT)
    HIGH
    2023/02/09DDI RULE 4806/vinfo/gb/threat-encyclopedia/network/ddi-rule-4806
    DDI RULE 4807 CVE-2022-47966 - ZOHO MANAGEENGINE RCE - HTTP(REQUEST)
    HIGH
    2023/02/09DDI RULE 4807/vinfo/gb/threat-encyclopedia/network/ddi-rule-4807
    DDI RULE 4808 CVE-2022-40624 - NETGATE RCE EXPLOIT - HTTP(REQUEST)
    HIGH
    2023/02/09DDI RULE 4808/vinfo/gb/threat-encyclopedia/network/ddi-rule-4808
    DDI RULE 4805 CVE-2022-21587 - ORACLE DESKTOP INTEGRATOR DIRECTORY TRAVERSAL EXPLOIT - HTTP(REQUEST)
    HIGH
    2023/02/08DDI RULE 4805/vinfo/gb/threat-encyclopedia/network/ddi-rule-4805
    DDI RULE 4803 MALLOX - HTTP(REQUEST)
    HIGH
    2023/01/30DDI RULE 4803/vinfo/gb/threat-encyclopedia/network/ddi-rule-4803
    DDI RULE 4802 CHISEL TUNNELING - HTTP(RESPONSE)
    HIGH
    2023/01/17DDI RULE 4802/vinfo/gb/threat-encyclopedia/network/ddi-rule-4802
    DDI RULE 4754 BUGHATCH - HTTP(REQUEST)
    HIGH
    2023/01/16DDI RULE 4754/vinfo/gb/threat-encyclopedia/network/ddi-rule-4754
    DDI RULE 4801 CVE-2022-29499 - MITEL MIVOICE RCE - HTTP(EXPLOIT)
    HIGH
    2023/01/11DDI RULE 4801/vinfo/gb/threat-encyclopedia/network/ddi-rule-4801
    DDI RULE 4799 MIMIKATZ SHELL - TCP
    HIGH
    2022/12/14DDI RULE 4799/vinfo/gb/threat-encyclopedia/network/ddi-rule-4799
    DDI RULE 4800 MIMIKATZ SHELL - HTTP(RESPONSE)
    HIGH
    2022/12/14DDI RULE 4800/vinfo/gb/threat-encyclopedia/network/ddi-rule-4800
    DDI RULE 4755 PROXYHTA - HTTP(REQUEST)
    HIGH
    2022/12/12DDI RULE 4755/vinfo/gb/threat-encyclopedia/network/ddi-rule-4755
    DDI RULE 2832 Possible CVE-2019-6340 Drupal8 RESTful Web Services Remote Code Execution - HTTP (Request)
    HIGH
    2022/12/08DDI RULE 2832/vinfo/gb/threat-encyclopedia/network/ddi-rule-2832
    DDI RULE 4792 CVE-2022-35951 - REDIS INTEGER OVERFLOW - TCP(REQUEST)
    HIGH
    2022/12/07DDI RULE 4792/vinfo/gb/threat-encyclopedia/network/ddi-rule-4792
    DDI RULE 4798 CVE-2022-30216 - WINDOWS SERVER SERVICES TAMPERING EXPLOIT - SMB2(REQUEST)
    HIGH
    2022/12/01DDI RULE 4798/vinfo/gb/threat-encyclopedia/network/ddi-rule-4798
    DDI RULE 2722 CVE-2017-0146 - Remote Code Execution - SMB (Request)
    MEDIUM
    2022/11/29DDI RULE 2722/vinfo/gb/threat-encyclopedia/network/ddi-rule-2722
    DDI RULE 4796 MICROSOFT EXCHANGE POWERSHELL EXPLOIT - HTTP(REQUEST)
    HIGH
    2022/11/28DDI RULE 4796/vinfo/gb/threat-encyclopedia/network/ddi-rule-4796
    DDI RULE 4797 CVE-2022-34721 - Windows Internet Key Exchange - Buffer Overflow RCE ISKAMP EXPLOIT - UDP(REQUEST)
    HIGH
    2022/11/28DDI RULE 4797/vinfo/gb/threat-encyclopedia/network/ddi-rule-4797
    DDI RULE 4786 CVE-2022-41040 - MS Exchange Server Side Request Forgery Exploit- HTTP(REQUEST)
    MEDIUM
    2022/11/24DDI RULE 4786/vinfo/gb/threat-encyclopedia/network/ddi-rule-4786
    DDI RULE 4784 CVE-2021-22205 - GITLAB CE/EE REMOTE CODE EXECUTION EXPLOIT - HTTP(REQUEST)
    HIGH
    2022/11/22DDI RULE 4784/vinfo/gb/threat-encyclopedia/network/ddi-rule-4784
    DDI RULE 4693 CVE-2022-30190 MICROSOFT WINDOWS SUPPORT DIAGNOSTIC TOOL RCE Exploit - HTTP (Response)
    HIGH
    2022/11/22DDI RULE 4693/vinfo/gb/threat-encyclopedia/network/ddi-rule-4693
    DDI RULE 4795 CVE-2022-38129 - KEYSIGHT SMS DIRECTORY TRAVERSAL - HTTP(REQUEST)
    HIGH
    2022/11/16DDI RULE 4795/vinfo/gb/threat-encyclopedia/network/ddi-rule-4795
    DDI RULE 4793 CVE-2022-3602 - OPENSSL BUFFER OVERFLOW EXPLOIT - TCP(REQUEST)
    HIGH
    2022/11/14DDI RULE 4793/vinfo/gb/threat-encyclopedia/network/ddi-rule-4793
    DDI RULE 4790 CVE-2022-40684 - FORTINET AUTHBYPASS EXPLOIT - HTTP(REQUEST)
    HIGH
    2022/10/24DDI RULE 4790/vinfo/gb/threat-encyclopedia/network/ddi-rule-4790
    DDI RULE 4791 CVE-2022-40300 - ZOHO MANAGEENGINE SQL CODE INJECTION - HTTP(REQUEST)
    HIGH
    2022/10/24DDI RULE 4791/vinfo/gb/threat-encyclopedia/network/ddi-rule-4791
    DDI RULE 4789 CVE-2022-3236 - SOPHOS FIREWALL RCE - HTTP(REQUEST)
    HIGH
    2022/10/19DDI RULE 4789/vinfo/gb/threat-encyclopedia/network/ddi-rule-4789
    DDI RULE 4788 CVE-2022-26013 - DELTA ELECTRONICS DIAENERGIE RCE EXPLOIT - HTTP(REQUEST)
    HIGH
    2022/10/17DDI RULE 4788/vinfo/gb/threat-encyclopedia/network/ddi-rule-4788
    DDI RULE 4787 RPC POSSIBLE DCSYNC - DCE (REQUEST) - Variant 2
    MEDIUM
    2022/10/11DDI RULE 4787/vinfo/gb/threat-encyclopedia/network/ddi-rule-4787
    DDI RULE 4760 CVE-2022-22536 - SAP INTERNET COMMUNICATION MANAGER HTTP REQUEST SMUGGLING - HTTP(REQUEST)
    HIGH
    2022/10/03DDI RULE 4760/vinfo/gb/threat-encyclopedia/network/ddi-rule-4760
    DDI RULE 4785 CVE-2022-40144 - Trend Micro Apex One Login Authentication Bypass Exploit - HTTP(REQUEST)
    HIGH
    2022/09/27DDI RULE 4785/vinfo/gb/threat-encyclopedia/network/ddi-rule-4785
    DDI RULE 4751 CVE-2022-23270 - MICROSOFT POINT-TO-POINT TUNNELING PROTOCOL RCE - TCP(REQUEST)
    HIGH
    2022/09/26DDI RULE 4751/vinfo/gb/threat-encyclopedia/network/ddi-rule-4751
    DDI RULE 4762 CVE-2022-30136 - MICROSOFT WINDOWS NFS BUFFER OVERFLOW EXPLOIT - TCP(REQUEST)
    HIGH
    2022/09/22DDI RULE 4762/vinfo/gb/threat-encyclopedia/network/ddi-rule-4762
    DDI RULE 4766 CVE-2022-1660 - KEYSIGHT SENSOR INSECURE DESERIALIZATION - HTTP(REQUEST)
    HIGH
    2022/09/21DDI RULE 4766/vinfo/gb/threat-encyclopedia/network/ddi-rule-4766
    DDI RULE 4752 CVE-2022-26809 - MICROSOFT WINDOWS RUNTIME LIBRARY INTEGER OVERFLOW EXPLOIT - SMB(RESPONSE)
    HIGH
    2022/09/21DDI RULE 4752/vinfo/gb/threat-encyclopedia/network/ddi-rule-4752
    DDI RULE 4673 CVE-2022-26871 - TREND MICRO APEX CENTRAL REMOTE CODE EXECUTION - HTTP(REQUEST)
    HIGH
    2022/09/21DDI RULE 4673/vinfo/gb/threat-encyclopedia/network/ddi-rule-4673
    DDI RULE 4783 CVE-2022-31474 - WordPress Plugin BackupBuddy Directory Traversal - HTTP(REQUEST)
    HIGH
    2022/09/20DDI RULE 4783/vinfo/gb/threat-encyclopedia/network/ddi-rule-4783
    DDI RULE 4782 CVE-2022-34715 - MICROSOFT WINDOWS NFS BUFFER OVERFLOW EXPLOIT - TCP(REQUEST)
    HIGH
    2022/09/19DDI RULE 4782/vinfo/gb/threat-encyclopedia/network/ddi-rule-4782
    DDI RULE 4756 CVE-2022-22980 - SPRING DATA MONGODB REMOTE CODE EXECUTION - HTTP(REQUEST)
    HIGH
    2022/09/15DDI RULE 4756/vinfo/gb/threat-encyclopedia/network/ddi-rule-4756
    DDI RULE 4764 CVE-2022-30525 - ZYXEL FIREWALL COMMAND INJECTION - HTTP(REQUEST)
    HIGH
    2022/09/15DDI RULE 4764/vinfo/gb/threat-encyclopedia/network/ddi-rule-4764
    DDI RULE 4781 CVE-2022-2135 - Advantech iView SQL Injection Exploit - HTTP(REQUEST)
    HIGH
    2022/09/14DDI RULE 4781/vinfo/gb/threat-encyclopedia/network/ddi-rule-4781
    DDI RULE 4678 CVE-2022-22965 - SPRING RCE EXPLOIT - HTTP(REQUEST)
    HIGH
    2022/09/14DDI RULE 4678/vinfo/gb/threat-encyclopedia/network/ddi-rule-4678
    DDI RULE 4688 COROXY - UDP(REQUEST)
    HIGH
    2022/09/14DDI RULE 4688/vinfo/gb/threat-encyclopedia/network/ddi-rule-4688
    DDI RULE 4779 CVE-2022-35405 - ZOHO MANAGE ENGINE RCE EXPLOIT - HTTP(REQUEST)
    HIGH
    2022/09/13DDI RULE 4779/vinfo/gb/threat-encyclopedia/network/ddi-rule-4779
    DDI RULE 4780 CVE-2022-2135 - HIKVISION WEB SERVER RCE EXPLOIT - HTTP(REQUEST)
    LOW
    2022/09/07DDI RULE 4780/vinfo/gb/threat-encyclopedia/network/ddi-rule-4780
    DDI RULE 1007 WMI Execute Method Request detected
    LOW
    2022/09/06DDI RULE 1007/vinfo/gb/threat-encyclopedia/network/ddi-rule-1007
    DDI RULE 4777 ANYDESK - HTTPS(REQUEST)
    HIGH
    2022/08/31DDI RULE 4777/vinfo/gb/threat-encyclopedia/network/ddi-rule-4777
    DDI RULE 4778 ATERA - HTTP(REQUEST)
    HIGH
    2022/08/30DDI RULE 4778/vinfo/gb/threat-encyclopedia/network/ddi-rule-4778
    DDI RULE 4775 CVE-2022-31656 - VMWARE AUTHBYPASS EXPLOIT - HTTP(REQUEST)
    MEDIUM
    2022/08/23DDI RULE 4775/vinfo/gb/threat-encyclopedia/network/ddi-rule-4775
    DDI RULE 4776 CVE-2022-31659 - VMWARE AUTHBYPASS EXPLOIT - HTTP(REQUEST)
    HIGH
    2022/08/23DDI RULE 4776/vinfo/gb/threat-encyclopedia/network/ddi-rule-4776
    DDI RULE 4774 CVE-2022-27925 - ZIMBRA RCE EXPLOIT - HTTP(REQUEST)
    HIGH
    2022/08/22DDI RULE 4774/vinfo/gb/threat-encyclopedia/network/ddi-rule-4774
    DDI RULE 4773 CVE-2022-21972 - PTPP REMOTE CODE EXECUTION - TCP(EXPLOIT)
    HIGH
    2022/08/18DDI RULE 4773/vinfo/gb/threat-encyclopedia/network/ddi-rule-4773
    DDI RULE 4768 SUSPICIOUS WINREG - SMB2(REQUEST)
    HIGH
    2022/08/16DDI RULE 4768/vinfo/gb/threat-encyclopedia/network/ddi-rule-4768
    DDI RULE 4772 WEBDAV DIRECTORY TRAVERSAL EXPLOIT - HTTP(RESPONSE)
    HIGH
    2022/08/12DDI RULE 4772/vinfo/gb/threat-encyclopedia/network/ddi-rule-4772
    DDI RULE 4759 COMMAND INJECTION EXPLOIT SENSOR - HTTP (REQUEST) - Variant 2
    MEDIUM
    2022/08/11DDI RULE 4759/vinfo/gb/threat-encyclopedia/network/ddi-rule-4759
    DDI RULE 4771 WVKEYLOGGER - HTTP(REQUEST)
    HIGH
    2022/08/02DDI RULE 4771/vinfo/gb/threat-encyclopedia/network/ddi-rule-4771
    DDI RULE 4765 CVE-2021-43983 - BUFFER OVERFLOW - HTTP(RESPONSE)
    HIGH
    2022/07/28DDI RULE 4765/vinfo/gb/threat-encyclopedia/network/ddi-rule-4765
    DDI RULE 4767 CVE-2021-46381 - DLINK DIRECTORY TRAVERSAL - HTTP(REQUEST)
    HIGH
    2022/07/28DDI RULE 4767/vinfo/gb/threat-encyclopedia/network/ddi-rule-4767
    DDI RULE 4770 CVE-2022-23277 - EXCHANGE RCE EXPLOIT - HTTP(REQUEST)
    HIGH
    2022/07/27DDI RULE 4770/vinfo/gb/threat-encyclopedia/network/ddi-rule-4770
    DDI RULE 4769 CVE-2021-31805 - APACHE STRUTS OGNL RCE EXPLOIT - HTTP(REQUEST)
    HIGH
    2022/07/26DDI RULE 4769/vinfo/gb/threat-encyclopedia/network/ddi-rule-4769
    DDI RULE 4763 CVE-2021-46422 - COMMAND INJECTION - HTTP(REQUEST)
    HIGH
    2022/07/20DDI RULE 4763/vinfo/gb/threat-encyclopedia/network/ddi-rule-4763
    DDI RULE 4697 FILE UPLOAD - HTTP(REQUEST)
    HIGH
    2022/07/18DDI RULE 4697/vinfo/gb/threat-encyclopedia/network/ddi-rule-4697
    DDI RULE 4761 CVE-2022-31626 - PHP BUFFER OVERFLOW - HTTP(REQUEST)
    HIGH
    2022/07/14DDI RULE 4761/vinfo/gb/threat-encyclopedia/network/ddi-rule-4761
    DDI RULE 4758 REMOTE CODE EXECUTION - HTTP (REQUEST) - Variant 5
    HIGH
    2022/07/12DDI RULE 4758/vinfo/gb/threat-encyclopedia/network/ddi-rule-4758
    DDI RULE 2573 MINER - TCP (Request)
    MEDIUM
    2022/07/06DDI RULE 2573/vinfo/gb/threat-encyclopedia/network/ddi-rule-2573
    DDI RULE 2586 NECURS - HTTP (Request) - Variant 4
    MEDIUM
    2022/07/06DDI RULE 2586/vinfo/gb/threat-encyclopedia/network/ddi-rule-2586
    DDI RULE 4757 CVE-2022-26937 - NFS BUFFER OVERFLOW EXPLOIT - TCP(RESPONSE)
    HIGH
    2022/07/05DDI RULE 4757/vinfo/gb/threat-encyclopedia/network/ddi-rule-4757
    DDI RULE 4641 CVE-2021-44228 - OGNL EXPLOIT - HTTP(REQUEST)
    MEDIUM
    2022/06/29DDI RULE 4641/vinfo/gb/threat-encyclopedia/network/ddi-rule-4641
    DDI RULE 4753 CVE-2022-26809 - RPC INTEGER OVERFLOW - DCE(RESPONSE)
    HIGH
    2022/06/20DDI RULE 4753/vinfo/gb/threat-encyclopedia/network/ddi-rule-4753
    DDI RULE 4750 CVE-2022-28213 - SAP XXE EXPLOIT - HTTP(REQUEST)
    HIGH
    2022/06/15DDI RULE 4750/vinfo/gb/threat-encyclopedia/network/ddi-rule-4750
    DDI RULE 4698 ENVELOPE SQL INJECTION - HTTP(REQUEST)
    HIGH
    2022/06/13DDI RULE 4698/vinfo/gb/threat-encyclopedia/network/ddi-rule-4698
    DDI RULE 4699 ENVELOPE SQL INJECTION - HTTP (REQUEST) - Variant 2
    HIGH
    2022/06/13DDI RULE 4699/vinfo/gb/threat-encyclopedia/network/ddi-rule-4699
    DDI RULE 4695 SSRF EXPLOIT - HTTP(REQUEST)
    HIGH
    2022/06/09DDI RULE 4695/vinfo/gb/threat-encyclopedia/network/ddi-rule-4695
    DDI RULE 4696 BLIND SSRF EXPLOIT - HTTP(REQUEST)
    HIGH
    2022/06/09DDI RULE 4696/vinfo/gb/threat-encyclopedia/network/ddi-rule-4696
    DDI RULE 4694 OGNL REMOTE CODE EXECUTION EXPLOIT - HTTP(REQUEST)
    HIGH
    2022/06/07DDI RULE 4694/vinfo/gb/threat-encyclopedia/network/ddi-rule-4694
    DDI RULE 4692 CVE-2019-18935 - TELERIK UI RCE - HTTP(REQUEST)
    HIGH
    2022/06/01DDI RULE 4692/vinfo/gb/threat-encyclopedia/network/ddi-rule-4692
    DDI RULE 4689 POSSIBLE SQL INJECT RCE EXPLOIT - HTTP (SEN) - Variant 2
    MEDIUM
    2022/05/27DDI RULE 4689/vinfo/gb/threat-encyclopedia/network/ddi-rule-4689
    DDI RULE 4691 CVE-2022-21907 - RCE EXPLOIT - HTTP (REQUEST) - Variant 2
    MEDIUM
    2022/05/24DDI RULE 4691/vinfo/gb/threat-encyclopedia/network/ddi-rule-4691
    DDI RULE 2341 COBALTSTRIKE - HTTP (Request)
    HIGH
    2022/05/19DDI RULE 2341/vinfo/gb/threat-encyclopedia/network/ddi-rule-2341
    DDI RULE 4690 CVE-2021-4039 - ZYXEL NWA COMMAND INJECTION - HTTP(REQUEST)
    HIGH
    2022/05/18DDI RULE 4690/vinfo/gb/threat-encyclopedia/network/ddi-rule-4690
    DDI RULE 4687 METASPLOIT COBALTSTRIKE STAGER - HTTP(RESPONSE)
    HIGH
    2022/05/12DDI RULE 4687/vinfo/gb/threat-encyclopedia/network/ddi-rule-4687
    DDI RULE 1639 UPATRE HTTP GET Request - Class 1
    HIGH
    2022/05/12DDI RULE 1639/vinfo/gb/threat-encyclopedia/network/ddi-rule-1639
    DDI RULE 4685 CVE-2021-22204 - REMOTE CODE EXECUTION - HTTP(EXPLOIT)
    HIGH
    2022/05/10DDI RULE 4685/vinfo/gb/threat-encyclopedia/network/ddi-rule-4685
    DDI RULE 4609 PAYLOADBIN - HTTP (REQUEST) - Variant 1
    HIGH
    2022/05/05DDI RULE 4609/vinfo/gb/threat-encyclopedia/network/ddi-rule-4609

    Try our services free for 30 days

    • Start your free trial today

    Resources

    • Blog
    • Newsroom
    • Threat Reports
    • Find a Partner

    Support

    • Business Support Portal
    • Contact Us
    • Downloads
    • Free Trials

    About Trend

    • About Us
    • Careers
    • Locations
    • Upcoming Events
    • Trust Center

    Country Headquarters

    Trend Micro - United States (US)

    225 East John Carpenter Freeway
    Suite 1500
    Irving, Texas 75062

    Phone: +1 (817) 569-8900

    Select a country / region

    close

    The Americas

    • United States
    • Brasil
    • Canada
    • México

    Middle East & Africa

    • South Africa
    • Middle East and North Africa

    Europe

    • België (Belgium)
    • Česká Republika
    • Danmark
    • Deutschland, Österreich Schweiz
    • España
    • France
    • Ireland
    • Italia
    • Nederland
    • Norge (Norway)
    • Polska (Poland)
    • Suomi (Finland)
    • Sverige (Sweden)
    • Türkiye (Turkey)
    • United Kingdom

    Asia & Pacific

    • Australia
    • Центральная Азия (Central Asia)
    • Hong Kong (English)
    • 香港 (中文) (Hong Kong)
    • भारत गणराज्य (India)
    • Indonesia
    • 日本 (Japan)
    • 대한민국 (South Korea)
    • Malaysia
    • Монголия (Mongolia) and рузия (Georgia)
    • New Zealand
    • Philippines
    • Singapore
    • 台灣 (Taiwan)
    • ประเทศไทย (Thailand)
    • Việt Nam

    Privacy | Legal | Accessibility | Site map

    Copyright ©2024 Trend Micro Incorporated. All rights reserved

    Copyright ©2024 Trend Micro Incorporated. All rights reserved