Rule Update

26-006 (February 10, 2026)


  DESCRIPTION

* indicates a new version of an existing rule

Deep Packet Inspection Rules:

DCERPC Services
1006906* - Identified Usage Of PsExec Command Line Tool (ATT&CK T1569.002)


Fortra GoAnywhere MFT
1012498 - Fortra GoAnywhere MFT Insecure Deserialization Vulnerability (CVE-2025-10035)


Splunk API
1012422* - Splunk Enterprise Reflected Cross-Site Scripting Vulnerability (CVE-2025-20297)


Web Server HTTPS
1012490* - WordPress 'Post SMTP' Plugin Authentication Bypass Vulnerability (CVE-2025-11833)
1012502* - WordPress 'Sneeit Framework' Plugin Remote Code Execution Vulnerability (CVE-2025-6389)


Web Server Nagios
1012481 - Nagios XI Command Injection Vulnerability (CVE-2025-34227)


n8n
1012531 - n8n Remote Code Execution Vulnerability (CVE-2026-1470)


Integrity Monitoring Rules:

There are no new or updated Integrity Monitoring Rules in this Security Update.


Log Inspection Rules:

There are no new or updated Log Inspection Rules in this Security Update.

Featured Stories