我的學習手記 A technical geek blog
Pages
Home
About
Reminder
Chatter
STEM
Links
Tuesday, April 2, 2024
Use Symantec Endpoint Protection to run the YARA rules to scan Linux servers for CVE-2024-3094
Use SEP to run the YARA rules to scan Linux servers for CVE-2024-3094
https://techdocs.broadcom.com/us/en/symantec-security-software/endpoint-security-and-management/endpoint-protection/all/Using-policies-to-manage-security/preventing-and-handling-virus-and-spyware-attacks-v40739565-d49e172/scanning-the-SEP-client-computer-using-custom-YARA-rules.html
Yara rule for CVE-2024-3094
https://github.com/Neo23x0/signature-base/blob/master/yara/bkdr_xz_util_cve_2024_3094.yar
Reference:
https://www.kaspersky.com/blog/cve-2024-3094-vulnerability-backdoor/50873/
Use Symantec Endpoint Protection to run the YARA rules to scan Linux servers for CVE-2024-3094
No comments:
Post a Comment
Newer Post
Older Post
Home
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment